Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
zoomwithjudy[.]com
“Join from App - Zoom”
Сохранённое обнаружение
Обнаружена маскировка
- Тип маскировки
content_divergence- Оценка маскировки
- 1/6
Сводка доказательств
Analysis of the domain zoomwithjudy.com indicates a high-risk brand impersonation campaign targeting Google. The domain was registered on March 16, 2026, through Network Solutions, LLC, and currently resolves to the IP address 170.114.52.3. It has been flagged in 23 threat intelligence pulses on AlienVault OTX, suggesting widespread recognition as malicious infrastructure. Security vendors on VirusTotal have detected the domain as malicious, with 8 out of 95 engines marking it as unsafe. The domain appears on four security blocklists and is actively blocked by SEAL, MetaMask, PhishDestroy, and BLP-Malware, further confirming its classification as a threat. The page title, 'Join from App - Zoom,' does not align with the declared brand target of Google, creating uncertainty about the exact nature of the impersonation. While the domain is designed to mimic a legitimate service, the mismatch between the page title and the stated target may indicate either a broader phishing kit or an attempt to exploit multiple brands. The domain employs HSTS and HTTP/3, alongside Cloudflare for hosting, which are common techniques to evade detection and enhance perceived legitimacy. The SSL certificate is issued by Let's Encrypt, a neutral but frequently abused certificate authority in phishing operations. Defenders should treat this domain as an active threat. The infrastructure analysis reveals no legitimate use case, and the combination of technical indicators—such as the recent registration date, Cloudflare hosting, and security vendor detections—supports its classification as malicious. Organizations are advised to block the domain and its resolving IP at the network level. Monitoring for related domains registered through the same registrar or resolving to the same IP may help identify additional threats. Given the domain's presence on multiple blocklists, automated blocking via existing security controls is recommended to mitigate potential exposure.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260318-87EB84- Заголовок сохранённой страницы
- Join from Zoom Workplace app - Zoom
- PDF-файл
- PDF с доказательствами
Правовое основание
Полный текст доказательств
Acceptable Use Policy (AUP): The domain zoomwithjudy.com is engaged in phishing activities, which is a clear violation of the AUP that prohibits illegal activities, fraud, and deception.
Terms of Service (TOS): The registrar reserves the right to suspend or terminate services for violations, and the ongoing phishing activities constitute a breach of these terms.
Applicable Laws (US):
Computer Fraud and Abuse Act (CFAA) - 18 U.S.C. § 1030: This law prohibits unauthorized access to computers and networks, which is applicable to phishing schemes that deceive users into providing sensitive information.
CAN-SPAM Act - 15 U.S.C. § 7701: This act regulates commercial email and prohibits misleading headers and deceptive subject lines, which are often used in phishing attacks.
Wire Fraud - 18 U.S.C. § 1343: Phishing schemes that involve the use of electronic communications to defraud individuals fall under this statute, making it a federal crime.
Regulatory Note: Failure to act on this report may result in regulatory scrutiny and potential liability for facilitating illegal activities. Immediate action is recommended to mitigate risks associated with non-compliance.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
8 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
VirusTotal
2 → 8
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of zoomwithjudy.com · checked Mar 18, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание