ref0107azpvkl[.]unifiedsrvgrid[.]com
“Business Help Center”
ref0107azpvkl.unifiedsrvgrid.com — コンテンツが利用できません. 詐欺タイプ: Credential Phishing. 証拠の概要: VirusTotal 10/91 (alphaMountain.ai, CRDF, Emsisoft, Fortinet, G-Data); URLQuery 2 det.; Spamhaus DBL_PHISH; CF Radar malicious; PhishDestroy score 93/100. レジストラ: GMO Internet.
元のフォレンジック記録を保持するため、下の PhishDestroy AI 詳細分析は英語のままです。
This domain, ref0107azpvkl.unifiedsrvgrid.com, is actively engaged in credential harvesting phishing operations. Analysis indicates the site mimics legitimate login interfaces to deceive users into submitting usernames, passwords, and potentially multi-factor authentication codes. Such attacks are commonly used to gain unauthorized access to email accounts, financial platforms, or corporate systems, leading to data breaches, identity theft, or further compromise of connected services. The site may also distribute malware under the guise of required software updates or security plugins, increasing the risk of device infection and lateral movement within networks. Infrastructure analysis reveals multiple technical indicators confirming malicious intent. The domain resolves to IP address 104.21.69.206 and is secured with an SSL certificate issued by Google Trust Services, a tactic frequently employed to lend false legitimacy. As of the latest scan, 9 out of 95 security vendors on VirusTotal have flagged the domain as malicious, with signatures detecting phishing behavior, fraudulent login forms, and suspicious JavaScript patterns. The domain was registered on June 30, 2026, through GMO Internet, Inc., and remains operational despite detection, suggesting ongoing abuse. The use of a subdomain under unifiedsrvgrid.com, a hosting provider known for transient phishing infrastructure, further supports the assessment of deliberate malicious activity. Users who have visited ref0107azpvkl.unifiedsrvgrid.com or entered credentials on the site should take immediate action to mitigate risk. First, reset passwords for any accounts accessed after visiting the domain, prioritizing email, financial, and work-related services. Enable multi-factor authentication using app-based or hardware tokens, not SMS, to reduce the risk of credential replay attacks. Scan the device used to access the site with updated security software to detect and remove any downloaded malware. Monitor accounts for unauthorized transactions, sent emails, or configuration changes, such as email forwarding rules or password recovery options. If corporate credentials were exposed, report the incident to internal security teams to initiate incident response protocols, including log review and network isolation if necessary. Finally, consider placing a fraud alert or credit freeze with relevant bureaus if financial or personal data was compromised.
ネットワークセキュリティインテリジェンス
脅威対応 Pipeline
公開ブロックリスト登録状況
保存済みキャプチャ
ドメイン・インテリジェンス
技術的な詳細DNS、SSL SAN、タイムスタンプ
ICANN OVERSIGHT
Registration: unifiedsrvgrid.com
認定と RAA の背景
認定と RAA の背景
Registrar accreditation and DNS abuse obligations
For the registrable domain unifiedsrvgrid.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
使用技術 · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 信頼度 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 信頼度 100%VirusTotalによる分析
サイトパフォーマンス分析
Google PageSpeed Insights — mobile performance audit of ref0107azpvkl.unifiedsrvgrid.com · checked Jul 3, 2026
証拠および外部報告書
PD-20260703-689E51 Recipient: abuse@internet.gmo このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください