ref0107azpvkl[.]unifiedsrvgrid[.]com
“Business Help Center”
ref0107azpvkl.unifiedsrvgrid.com — 콘텐츠를 사용할 수 없음. 사기 유형: Credential Phishing. 증거 요약: VirusTotal 10/91 (alphaMountain.ai, CRDF, Emsisoft, Fortinet, G-Data); URLQuery 2 det.; Spamhaus DBL_PHISH; CF Radar malicious; PhishDestroy score 93/100. 등록기관: GMO Internet.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
This domain, ref0107azpvkl.unifiedsrvgrid.com, is actively engaged in credential harvesting phishing operations. Analysis indicates the site mimics legitimate login interfaces to deceive users into submitting usernames, passwords, and potentially multi-factor authentication codes. Such attacks are commonly used to gain unauthorized access to email accounts, financial platforms, or corporate systems, leading to data breaches, identity theft, or further compromise of connected services. The site may also distribute malware under the guise of required software updates or security plugins, increasing the risk of device infection and lateral movement within networks. Infrastructure analysis reveals multiple technical indicators confirming malicious intent. The domain resolves to IP address 104.21.69.206 and is secured with an SSL certificate issued by Google Trust Services, a tactic frequently employed to lend false legitimacy. As of the latest scan, 9 out of 95 security vendors on VirusTotal have flagged the domain as malicious, with signatures detecting phishing behavior, fraudulent login forms, and suspicious JavaScript patterns. The domain was registered on June 30, 2026, through GMO Internet, Inc., and remains operational despite detection, suggesting ongoing abuse. The use of a subdomain under unifiedsrvgrid.com, a hosting provider known for transient phishing infrastructure, further supports the assessment of deliberate malicious activity. Users who have visited ref0107azpvkl.unifiedsrvgrid.com or entered credentials on the site should take immediate action to mitigate risk. First, reset passwords for any accounts accessed after visiting the domain, prioritizing email, financial, and work-related services. Enable multi-factor authentication using app-based or hardware tokens, not SMS, to reduce the risk of credential replay attacks. Scan the device used to access the site with updated security software to detect and remove any downloaded malware. Monitor accounts for unauthorized transactions, sent emails, or configuration changes, such as email forwarding rules or password recovery options. If corporate credentials were exposed, report the incident to internal security teams to initiate incident response protocols, including log review and network isolation if necessary. Finally, consider placing a fraud alert or credit freeze with relevant bureaus if financial or personal data was compromised.
네트워크 보안 인텔리전스
위협 대응 Pipeline
공개 차단 목록 상태
저장된 캡처
도메인 인텔리전스
기술적 세부 사항DNS, SSL SAN, 타임스탬프
ICANN OVERSIGHT
Registration: unifiedsrvgrid.com
인증 및 RAA 상황
인증 및 RAA 상황
Registrar accreditation and DNS abuse obligations
For the registrable domain unifiedsrvgrid.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
사용 기술 · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 신뢰도 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 신뢰도 100%VirusTotal 분석
사이트 성능 분석
Google PageSpeed Insights — mobile performance audit of ref0107azpvkl.unifiedsrvgrid.com · checked Jul 3, 2026
증거 및 외부 보고서
PD-20260703-689E51 Recipient: abuse@internet.gmo 이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.