2zoommiinviteei[.]com
Зведення доказів
2zoommiinviteei.com is currently offline but was previously observed resolving to the IPv4 address 104.225.130.131. The address belongs to AS395092 hosted by Shock Hosting LLC and is geolocated in the United States. The domain was registered on October 09, 2025 through NameCheap, Inc., and its authoritative name servers are ns3.loominost.com, ns4.loominost.com, ns7.loominost.com, and ns8.loominost.com. No TLS certificate was presented for the host, indicating that the site operated without HTTPS protection.
Gridinsoft assigned a trust score of 0 out of 100, reflecting a complete lack of reputation. VirusTotal scans returned 12 positive detections out of 95 submitted engines, confirming that multiple security products consider the domain malicious. The domain appears on a single public blocklist and is actively blocked by the PhishDestroy service, reinforcing its classification as a phishing infrastructure. The combination of a recent registration, low‑reputation name servers, absence of encryption, and multiple vendor detections suggests a purpose‑built phishing campaign, although the exact brand or lure being impersonated has not been disclosed in the available data.
Analysts should continue to monitor the associated IP address for any re‑activation and ensure that any residual DNS entries are scrubbed from internal resolvers. Defensive measures should include adding the domain and its IP to web‑filter block lists, enforcing strict TLS inspection policies, and reviewing outbound traffic for connections to the listed name servers. At this stage, the primary uncertainty is the specific content that was hosted before takedown; therefore, threat‑intel sharing platforms should be consulted for any archived page captures or additional context.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога