Scam Detective

Scam Campaign

Scam Reports for www.guardian.co.uk

Identified on 4/18/2026

Primary Entity

domain

www.guardian.co.uk
Suspicious
  • No SSL certificate
  • 5 community reports from users

Campaign Narrative

This cybersecurity investigation has identified a sophisticated scam campaign involving five connected entities that are being co-reported by consumers across multiple platforms. The network consists of phone number 614-388-9694 and four domains: www.guardian.co.uk, www.reviewcentre.com, www.weareelectricals.com, and weareelectricals.wordpress.com. These entities demonstrate 11 distinct cross-entity relationships, all classified as "reported_together" connections with maximum confidence scores of 1.00, indicating a coordinated campaign structure.

The campaign appears to operate through multiple deceptive tactics, with community reports revealing at least two distinct scam operations. The most prominent scheme involves fraudulent Microsoft technical support calls, with 23 upvotes on reports describing callers claiming to represent "Microsoft Windows Computers" who attempt to walk victims through supposed malware removal processes. These calls originate from what victims describe as "an Indian call center through a faked phone exchange." Additionally, the network includes WeAreElectricals, a UK-based operation that takes consumer payments for goods that are never delivered, as documented in community reports with 5 upvotes describing Christmas presents that were ordered but never received.

The infrastructure analysis reveals a mixed profile of domain registrations spanning from 1996 to 2016, with registrars including GoDaddy.com LLC, Gandi SAS, Unstoppable Domains, and MarkMonitor Inc. Notably, the campaign includes both the legitimate Guardian newspaper website (www.guardian.co.uk, registered in 1996) and fraudulent domains, suggesting either domain spoofing tactics or compromised legitimate infrastructure being exploited alongside purpose-built scam websites.

To protect against this campaign, consumers should verify any unsolicited technical support calls by hanging up and contacting Microsoft directly through official channels rather than allowing remote computer access. Never click links or provide payment information to unsolicited callers or unfamiliar websites, especially those claiming urgent computer security issues. Before making purchases from unfamiliar e-commerce sites, research the company through multiple review sources and verify their legitimacy through official business registries. If contacted by any entities in this network, hang up immediately, do not click any provided links, and report the incident to the FTC at reportfraud.ftc.gov or to the FCC for phone-based scams. Consumers can verify the safety of phone numbers and domains by checking them against known scam databases and official fraud reporting websites.

This campaign represents a high-threat, multi-vector scam operation that combines technical support fraud with e-commerce theft. The strong interconnection between all entities (11 relationships across 5 entities) and the diversity of scam tactics employed indicate an organized operation. Immediate recommended actions include adding phone number 614-388-9694 to blocking systems, flagging the fraudulent domains for takedown procedures, and issuing consumer alerts about the Microsoft technical support impersonation scheme and the WeAreElectricals payment fraud operation.

Entity Roster

Phone Numbers (1)

Domains (4)

Data Sources

Related Campaigns

Other campaigns that share phone numbers, domains, or companies with this one.

Scam Prevention Resources

Proton Pass Unique passwords for every account

After a breach, reused passwords let attackers into your other accounts. Proton Pass generates and stores a unique password for each one.

View all campaigns