us018webzoom[.]com
“Zoom Client Update”
साक्ष्य सारांश
Analysis of the domain us018webzoom.com indicates a recent brand‑impersonation campaign targeting Zoom users. The domain was created on 14 August 2025 and is hosted on Cloudflare’s network (ASN 13335) at IP address 172.67.141.219, which resolves to a United States location. The authoritative nameservers are henrik.ns.cloudflare.com and lana.ns.cloudflare.com, confirming the use of Cloudflare DNS services. No SSL certificate was observed, meaning the site operates over plain HTTP, a characteristic often seen in hastily deployed phishing infrastructure. The site’s page title, “Zoom Client Update,” aligns with the declared scam type of brand impersonation and matches the targeted brand “Zoom.” Registration details list OwnRegistrar, Inc. as the registrar, and the domain is currently listed as offline, suggesting that the malicious content has been taken down or the infrastructure has been disrupted.
Independent security blocklists have recorded the domain once, and the blocklist PhishDestroy is noted as having blocked it. Gridinsoft assigns a trust score of 0 out of 100, indicating an extremely low reputation. VirusTotal analysis shows that six of ninety‑five scanning engines flagged the domain, providing additional corroboration of malicious intent. Despite these indicators, the limited number of vendor detections and a single blocklist entry imply that the campaign may have been short‑lived or low‑volume.
No further intelligence such as associated malware hashes, phishing kit identifiers, or command‑and‑control endpoints is available in the current dataset, leaving the full scope of the operation uncertain. Defenders should update URL filtering and DNS threat‑intelligence feeds to include us018webzoom.com, monitor for any re‑appearance of the domain or related Cloudflare IPs, and enforce strict TLS inspection policies to detect attempts to serve similar content over unencrypted channels.
Data Coverage
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
पहचान समयरेखा
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।