Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
unikoom[.]ru
“Unikoom: Все о вашем хобби”
Riepilogo delle prove
The domain unikoom.ru has been assessed as an elevated risk site, specifically engaging in brand impersonation. This threat impersonates MetaMask, aiming to deceive users and potentially steal their credentials or private keys. The site was taken offline, but the risk remains due to its prior malicious activities and the potential for reappearance in a similar form.
Analysis indicates that the domain unikoom.ru is flagged by 5 out of 95 security vendors on VirusTotal, suggesting a low but significant detection rate. The domain is registered through RU-CENTER-RU, a registrar known for its association with various potentially malicious activities. Infrastructure analysis reveals that the domain resolves to the IP address 186.2.175.37, which has been linked to DDoS-Guard, a service often used to protect potentially malicious websites from takedown attempts. The domain was created on February 21, 2026, and has been listed on four security blocklists, including those maintained by MetaMask, SEAL, PhishDestroy, and OISD. The Gridinsoft trust score for this domain is 0 out of 100, indicating a complete lack of trustworthiness. Additionally, the SSL certificate for unikoom.ru is issued by Let's Encrypt, a common practice among phishing sites to enhance credibility.
To mitigate the risks associated with this threat, users are advised to verify the URL and SSL certificate of any site that claims to be MetaMask or requests MetaMask-related information. Security solutions should be updated to include the latest blocklists and detection signatures. Organizations and individuals should also be cautious about links received via email or messaging platforms and report any suspicious activities to the appropriate security authorities or the MetaMask support team. Regularly monitoring and educating users about the latest phishing techniques can further reduce the likelihood of falling victim to similar scams.
Istantanea delle prove inviate
- Inviato
- Voci del registro
- 1
- ID del caso
PD-20260210-6715CE- Artefatto PDF
- Prova in PDF
Base giuridica
Testo completo delle prove
Acceptable Use Policy (AUP): The domain unikoom.ru is engaged in phishing activities, which directly contravenes the AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The registrar reserves the right to suspend or terminate services for violations, including those related to fraudulent activities, which are evident in the operation of this domain.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. law prohibits unauthorized access to computers and networks, which is applicable to phishing schemes.
Wire Fraud Statute (18 U.S.C. § 1343): This statute criminalizes schemes to defraud using electronic communications, which is relevant to the activities associated with unikoom.ru.
Anti-Phishing Consumer Protection Act: This legislation aims to combat phishing by imposing penalties on those who engage in deceptive practices to obtain personal information.
Regulatory Note: Failure to take appropriate action against this domain may expose your organization to regulatory scrutiny and potential liability under applicable laws. Immediate suspension is advised to mitigate risks associated with non-compliance.
Data Coverage
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 11/08/2026
8 fonti esterne monitorate Nessuna corrispondenza
Cronologia del rilevamento
-
Cloudflare Radar
Scansione Cloudflare Radar archiviata · Apri scansione
-
Stato del dominio
Raggiungibile → Non raggiungibile
-
VirusTotal
2 → 5
-
Stato del dominio
Raggiungibile → Non raggiungibile
-
Stato del dominio
Non raggiungibile → Raggiungibile
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of unikoom.ru · checked Jun 27, 2026
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo