my.gradient.directory
“Gradient Network”
Analysis of the domain my.gradient.directory indicates that it is currently active and associated with a generic phishing operation.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
증거 요약
Analysis of the domain my.gradient.directory indicates that it is currently active and associated with a generic phishing operation. The domain resolves to the IPv4 address 162.244.92.2, providing a single point of contact for the malicious infrastructure. Independent threat‑intel feeds have flagged the host: PhishDestroy and ScamSniffer list it, and it appears on two additional security blocklists, confirming that multiple security vendors have observed abusive activity tied to the domain. A VirusTotal submission routed the domain to 91 antivirus and sandbox engines; none reported a detection at the time of analysis.
While the lack of detections may reflect a low‑profile payload or evasion techniques, it does not constitute evidence of safety. No publicly disclosed Safe Browsing, Open Threat Exchange (OTX), registrar, TLS certificate, HTTP status code, page title, or trust‑score data is available in the current intelligence set, leaving many infrastructure attributes unknown. The risk level is marked as “under investigation,” and the status remains active, suggesting continued operation. Defenders should therefore treat any email, URL, or login prompt that references my.gradient.directory as potentially malicious.
Recommended mitigations include adding the domain and its resolved IP address (162.244.92.2) to network deny lists, enforcing DNS‑sinkhole policies, and monitoring outbound connections for attempts to reach the host. Continuous re‑evaluation is advised: periodic rescans with VirusTotal or alternative sandbox platforms, correlation with newly observed phishing campaigns, and updating of blocklist entries as fresh indicators emerge. Until forensic analysis provides a definitive attribution or confirms cessation of activity, the domain should be regarded as hostile.
네트워크 보안 인텔리전스 Registrar context
Forensic History & Detection Timeline
-
Threat First Observed Aug 7, 2026 · 10:53 UTCDomain ingestion complete. Initial state is marked as alive pointing to IP
162.244.92.2.
위협 대응 Pipeline
공개 차단 목록 상태
탐지 회피 분석
클로킹 및 트래픽 분산 점검
아직 스캔되지 않았습니다
크롤러와 브라우저 간의 차이는 아직 보고된 바가 없습니다.
이 호스트에 대해 저장된 크롤러 대 브라우저 관측 데이터와, 케이타로 스타일의 트래픽 분배 시스템을 위한 실시간 지문 확인 정보.
- 저장된 은신 플래그
- 아직 스캔되지 않았습니다
- 마지막 은폐 스캔
- 스캐너가 감지한 서버 헤더
LiteSpeed
스캐너 메모: alive_content: raw=ok; http=200; via=https_proxy; server=LiteSpeed
저장된 캡처 · 4 sources
도메인 인텔리전스
기술 세부 정보DNS, SSL SAN, 타임스탬프
ICANN OVERSIGHT
Registration: gradient.directory
인증 및 RAA 상황
인증 및 RAA 상황
Registrar accreditation and DNS abuse obligations
For the registrable domain gradient.directory behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-09-21 02:39:40 UTC
기술 · 3 identified
VirusTotal 분석
보관된 증거
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.