su04webzoom-business[.]com
“Index of /”
su04webzoom-business.com — لم يتم التحقق منها. انتحال العلامة التجارية: Zoom; نوع الاحتيال: Impersonation. ملخص الأدلة: VirusTotal 5/91 (alphaMountain.ai, Fortinet, Gridinsoft, LevelBlue, SOCRadar); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 90/100. مسجّل النطاق: Ultahost.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis conducted on July 19, 2026 confirms that the domain su04webzoom-business.com is an active phishing site impersonating Zoom, a widely recognized video conferencing platform. The domain was registered through Ultahost, Inc. and currently resolves to the IP address 85.158.57.2, hosted under Datacamp Limited in Poland. Infrastructure analysis reveals the use of nameservers ns1.ultahost.com, ns2.ultahost.com, ns3.ultahost.com, and ns4.ultahost.com, consistent with the registrar's hosting environment. Security vendors have flagged this domain with moderate confidence: five out of ninety-one engines on VirusTotal detect it as malicious. The domain appears on three security blocklists, including PhishDestroy, MetaMask, and SEAL, indicating prior identification as a threat. AlienVault OTX records the domain in one threat intelligence pulse, further corroborating its association with malicious activity. The SSL certificate is issued by Let's Encrypt, a common choice for both legitimate and fraudulent sites, and does not inherently indicate trustworthiness. The site returns an HTTP 301 redirect, suggesting it may be part of a larger redirection chain or infrastructure designed to evade detection. The page title 'Index of /' indicates a directory listing, which is atypical for a legitimate Zoom service page and may reflect either misconfiguration or an attempt to obscure malicious content. No specific phishing kit or payload has been confirmed at this stage, and the exact content of the site remains unanalyzed. Defenders are advised to block the domain and its resolving IP address at the network level. Organizations using Zoom should alert employees to the risk of brand impersonation and reinforce verification procedures for communications claiming to originate from Zoom. Given the domain's active status and presence on multiple blocklists, continued monitoring is recommended to assess any shifts in infrastructure or tactics.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
المراجع المتقاطعة لاستخبارات التهديدات · source references
التقنيات · 2 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org ثقة 100٪OpenResty is a web platform based on nginx which can run Lua scripts using its LuaJIT engine.
openresty.org ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of su04webzoom-business.com · checked Jul 20, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب