Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
zoomwithjudy[.]com
“Join from App - Zoom”
اكتشاف محفوظ
تنبيه إخفاء المحتوى
- نوع الإخفاء
content_divergence- درجة الإخفاء
- 1/6
ملخص الأدلة
Analysis of the domain zoomwithjudy.com indicates a high-risk brand impersonation campaign targeting Google. The domain was registered on March 16, 2026, through Network Solutions, LLC, and currently resolves to the IP address 170.114.52.3. It has been flagged in 23 threat intelligence pulses on AlienVault OTX, suggesting widespread recognition as malicious infrastructure. Security vendors on VirusTotal have detected the domain as malicious, with 8 out of 95 engines marking it as unsafe. The domain appears on four security blocklists and is actively blocked by SEAL, MetaMask, PhishDestroy, and BLP-Malware, further confirming its classification as a threat. The page title, 'Join from App - Zoom,' does not align with the declared brand target of Google, creating uncertainty about the exact nature of the impersonation. While the domain is designed to mimic a legitimate service, the mismatch between the page title and the stated target may indicate either a broader phishing kit or an attempt to exploit multiple brands. The domain employs HSTS and HTTP/3, alongside Cloudflare for hosting, which are common techniques to evade detection and enhance perceived legitimacy. The SSL certificate is issued by Let's Encrypt, a neutral but frequently abused certificate authority in phishing operations. Defenders should treat this domain as an active threat. The infrastructure analysis reveals no legitimate use case, and the combination of technical indicators—such as the recent registration date, Cloudflare hosting, and security vendor detections—supports its classification as malicious. Organizations are advised to block the domain and its resolving IP at the network level. Monitoring for related domains registered through the same registrar or resolving to the same IP may help identify additional threats. Given the domain's presence on multiple blocklists, automated blocking via existing security controls is recommended to mitigate potential exposure.
لقطة الأدلة المرسلة
- أُرسل
- سجلات الدفتر
- 1
- معرّف القضية
PD-20260318-87EB84- عنوان الصفحة الملتقطة
- Join from Zoom Workplace app - Zoom
- ملف PDF
- دليل PDF
الأساس القانوني
النص الكامل للدليل
Acceptable Use Policy (AUP): The domain zoomwithjudy.com is engaged in phishing activities, which is a clear violation of the AUP that prohibits illegal activities, fraud, and deception.
Terms of Service (TOS): The registrar reserves the right to suspend or terminate services for violations, and the ongoing phishing activities constitute a breach of these terms.
Applicable Laws (US):
Computer Fraud and Abuse Act (CFAA) - 18 U.S.C. § 1030: This law prohibits unauthorized access to computers and networks, which is applicable to phishing schemes that deceive users into providing sensitive information.
CAN-SPAM Act - 15 U.S.C. § 7701: This act regulates commercial email and prohibits misleading headers and deceptive subject lines, which are often used in phishing attacks.
Wire Fraud - 18 U.S.C. § 1343: Phishing schemes that involve the use of electronic communications to defraud individuals fall under this statute, making it a federal crime.
Regulatory Note: Failure to act on this report may result in regulatory scrutiny and potential liability for facilitating illegal activities. Immediate action is recommended to mitigate risks associated with non-compliance.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
المخطط الزمني للاكتشاف
-
VirusTotal
2 ← 8
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of zoomwithjudy.com · checked Mar 18, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب