The domain go-zedelivery24h.shop is currently active and classified as a high‑risk delivery‑scam operation. Infrastructure analysis shows the domain is hosted on IP address 88.80.17.231 and uses the authoritative name servers ns1.dyna-ns.net and ns2.dyna-ns.net. VirusTotal records indicate that eight of ninety‑one scanned security vendors have flagged the domain, providing independent corroboration of malicious intent. Google Safe Browsing has marked the site for social‑engineering content, aligning with the delivery‑scam profile.
The domain appears on two external blocklists, specifically PhishDestroy and OpenPhish, confirming that multiple threat‑intel feeds have identified it as abusive. These detections collectively demonstrate a consistent pattern of malicious activity across independent platforms. The available data does not include detailed information on SSL certificates, HTTP response codes, or page‑title content, leaving the exact delivery‑scam tactics employed by the site unverified.
Nevertheless, the convergence of vendor detections, safe‑browsing warnings, and blocklist listings provides sufficient evidence for defenders to treat the domain as malicious. Security teams should block DNS resolution to go‑zedelivery24h.shop, add the associated IP address 88.80.17.231 to network‑level deny lists, and monitor for any traffic attempting to contact the identified name servers. Continuous re‑evaluation is advised in case additional intelligence, such as payload samples or phishing page screenshots, becomes available.