zkwasm[.]fi
“zkwasm.fi | 520: Web server is returning an unknown error”
Resumen de las pruebas
Analysis of the domain zkwasm.fi indicates it is being used for a generic phishing operation and has been taken offline as of the report date, July 24, 2026. The domain was registered on February 21, 2026 and is served from the IP address 188.114.97.3, which belongs to Cloudflare, Inc. (AS13335) and resolves to a United States location. The hosting infrastructure is typical of fast‑flux or abuse‑resilient setups, leveraging Cloudflare's DNS and CDN services; the authoritative nameservers are meilani.ns.cloudflare.com and kianchau.ns.cloudflare.com. The site returned an HTTP 520 error with the page title "zkwasm.fi | 520: Web server is returning an unknown error," suggesting the underlying web server is misconfigured or intentionally obscured.
Security telemetry shows the domain appears on three independent blocklists and has been flagged by PhishDestroy, MetaMask, and SEAL, reinforcing the phishing classification. Reputation scoring from Gridinsoft assigns a zero‑point trust rating (0/100), indicating a complete lack of legitimacy. VirusTotal analysis reports six of ninety‑three scanning engines flagging the domain, providing additional independent confirmation of malicious intent. The SSL certificate is identified only as "WE1," with no further validation details, which is consistent with a low‑trust certificate often observed in malicious deployments.
Defenders should immediately block the domain at perimeter firewalls, DNS resolvers, and endpoint protection solutions. Continuous monitoring of the associated IP address and Cloudflare nameserver patterns is advised, as the infrastructure may be reused for further malicious domains. Adding the domain to internal threat intelligence feeds and sharing the indicator with peer organizations can help accelerate detection of related campaigns.
Data Coverage
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 11/08/2026
8 fuentes externas supervisadas Sin coincidencias
Análisis de VirusTotal
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.