omni[.]variationzl[.]io
“Service Status”
Evidence Summary
The domain omni.variationzl.io is currently classified as high risk for phishing based on several corroborated technical indicators. As of July 19, 2026, the domain remains active and is listed on at least one established security blocklist, specifically being blocked by PhishDestroy. Analysis shows it is resolving to the IP address 172.67.159.214, which is associated with Cloudflare, Inc. infrastructure in Canada. The HTTP response is a 301 redirect, and the page title observed is 'Just a moment...', which is commonly seen on sites employing interstitials or traffic filtering. The domain presents with a valid SSL certificate issued by Google Trust Services (WE1), which is not, in itself, an indicator of legitimacy or safety. VirusTotal scanning results reveal that 4 out of 91 security vendors have flagged this domain as malicious or suspicious. While the specific brand target or phishing content is not identified in the available data, the presence on multiple security blocklists and positive detections among industry vendors provide credible evidence of active abuse. Defenders should block access to omni.variationzl.io within their networks and monitor for any related indicators of compromise, given its continued operational status and corroborated malicious activity. Further analysis is needed to determine the exact content and techniques used, but the accumulated evidence supports immediate caution and mitigation.
Data Coverage
Network Security Intelligence
Threat Response Pipeline
Blocklist coverage
10 monitored external feeds · stored snapshot Aug 12, 2026
10 monitored external feeds No match
Domain Intelligence
Technical detailsDNS, TLS names and timestamps
Technologies
3 high-confidence technologies identified
VirusTotal Analysis
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of omni.variationzl.io · checked Jul 20, 2026
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive