graph[.]login[.]userverifylogin[.]com
graph.login.userverifylogin.com 피싱 및 보안 점검
“Sign in to your Microsoft account”
graph.login.userverifylogin.com — 콘텐츠를 사용할 수 없음 (HTTP 502). 브랜드 사칭: Microsoft; 사기 유형: Tech Support Scam. 증거 요약: VT 23/93 (ADMINUSLabs, Criminal IP, BitDefender, Certego, Cluster25); URLQuery 0; URLScan no malicious verdict; GSB flagged; BL 0; PD 95/100. 등록기관: GoDaddy.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
PhishDestroy first observed graph.login.userverifylogin.com on Jan 23, 2026. Positive findings were recorded by VirusTotal and Google Safe Browsing. Evidence score: 95/100.
VirusTotal recorded 23 detections among 93 engines: ADMINUSLabs, Criminal IP, BitDefender, Certego, Cluster25, CRDF, CyRadar, Ermes on Feb 25, 2026 at 00:11 UTC. Google Safe Browsing flagged the domain: Social Engineering on Feb 25, 2026 at 20:32 UTC. The external blocklist snapshot contained no matches on Aug 7, 2026 at 10:20 UTC. URLQuery recorded no positive detection. URLScan completed without a malicious verdict (score 0) on Jan 23, 2026 at 11:49 UTC. PhishStats returned no feed match on Mar 1, 2026 at 02:52 UTC.
HTTP 502 was recorded on Aug 7, 2026 at 01:16 UTC; content was unavailable. Registration records list GoDaddy.com, LLC as the registrar and Dec 9, 2025 as the registration date. At collection time, the domain resolved to 44.222.203.160. Collected metadata identifies Microsoft as the apparent target. Captured page title: “Sign in to your Microsoft account”. PhishDestroy classified the observed content as Tech Support Scam. DOM analysis completed on Mar 24, 2026 at 01:20 UTC; stored DOM score 10/100. IoC extraction completed on Aug 2, 2026 at 04:16 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators.
Stored full analysis2026년 7월 7일
This domain, graph.login.userverifylogin.com, poses a significant credential theft threat by impersonating Microsoft’s login infrastructure. Analysis indicates the site was designed to harvest user account credentials under the guise of a legitimate Microsoft sign-in page, as evidenced by its page title, 'Sign in to your Microsoft account.' Such impersonation attacks are commonly used to gain unauthorized access to corporate or personal data, deploy malware, or facilitate further fraudulent activities. Infrastructure analysis reveals multiple high-confidence indicators of malicious intent. The domain was registered on December 9, 2025, through GoDaddy.com, LLC, and currently resolves to the IP address 44.222.203.160, hosted on Amazon Web Services (AS14618). It lacks an SSL certificate, a critical security red flag for any login portal. Security vendors have flagged the domain as malicious, with 23 out of 95 engines on VirusTotal detecting it as phishing. Additionally, Google Safe Browsing has classified it as a phishing site, and it appears on at least one security blocklist. If you or someone in your organization visited graph.login.userverifylogin.com and entered credentials, immediate action is required. Disconnect the affected device from the network to prevent potential lateral movement or data exfiltration. Reset all passwords associated with the compromised account, particularly for Microsoft services, using a separate, secure device. Enable multi-factor authentication (MFA) if not already active. Monitor the account for unauthorized access or suspicious activity, and review connected applications for signs of compromise. If corporate credentials were exposed, report the incident to your security team for further investigation and containment.
위협 대응 Pipeline
공개 차단 목록 상태
저장된 캡처
도메인 인텔리전스
기술적 세부 사항DNS, SSL SAN, 타임스탬프
ICANN OVERSIGHT
Registration: userverifylogin.com
인증 및 RAA 상황
인증 및 RAA 상황
ICANN은 돈을 받았다. 책임은 끝내 오지 않았다.
For the registrable domain userverifylogin.com behind this subdomain, the registrar above operates under an ICANN contract. ICANN collects annual, variable and transaction-based fees tied to registrations, renewals and transfers.
인증: 수익화 완료. 책임: 나중에 다시 확인하십시오.
그러고 나면 마법이 시작됩니다. ICANN은 RAA §3.18을 작성하고, 등록기관은 자기 고객 기반 안의 악용을 스스로 조사하며, 피해자는 증거를 공짜로 제공하는 동안 모든 단계는 다른 누군가가 움직이기만을 기다립니다. 그 덕분에 피해자가 더 안전하다고 느낀다면 훌륭합니다—청구서가 제 몫을 한 셈이니까요.
VirusTotal 분석
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.
이 보고서 정보: graph.login.userverifylogin.com
이 보고서는 PhishDestroy에서 사용할 수 있는 최신 저장된 증거를 제공합니다. 가능한 경우 소스 타임스탬프가 표시됩니다. 가용성 및 공급업체 평가는 수집 후 변경될 수 있습니다.
캡처된 사이트는 페이지 제목 “Sign in to your Microsoft account”를 표시했으며 Microsoft를 사칭했을 수 있습니다.
2026년 8월 7일부터 graph.login.userverifylogin.com는 23 보안 엔진에서 탐지되었습니다.
이 목록이 정확하지 않다고 생각되면 항소를 제출하다. 당사의 방법론에 대해 알아보려면 FAQ 페이지를 방문하세요.