us01pbx[.]zoomv[.]us
“zoomv.us”
us01pbx.zoomv.us — Неперевірений. Зведення доказів: VirusTotal 6/91 (ADMINUSLabs, CRDF, CyRadar, Forcepoint ThreatSeeker, Fortinet); PhishDestroy score 78/100. Реєстратор: ABOVE.COM PTY.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain us01pbx.zoomv.us is a confirmed generic phishing site posing an elevated risk of credential theft or malware distribution. No specific brand impersonation or drainer kit was identified. As of the latest verification, us01pbx.zoomv.us has been taken offline, though prior activity classified it as a phishing threat.
Technical indicators show limited but clear detection: 2 of 95 VirusTotal security vendors flagged us01pbx.zoomv.us, including Fortinet and SOCRadar. The domain appears on 3 security blocklists (PhishDestroy, MetaMask, and SEAL) and was registered through ABOVE.COM PTY LTD on February 8, 2021. It resolved to IP address 199.59.243.228, hosted on Amazon.com, Inc. infrastructure (AS16509) in the US, with an SSL certificate issued by Let's Encrypt (R13). Detected technologies include Google Cloud, Nginx, and Google Cloud CDN, while the observed page title was 'zoomv.us'. Google Safe Browsing did not flag the domain at the time of analysis.
Individuals who interacted with us01pbx.zoomv.us should immediately change any exposed credentials, enable multi-factor authentication on all accounts, and monitor for unauthorized access or fraudulent transactions. If financial or cryptocurrency data was entered, revoke any token approvals and consider transferring funds to a new wallet. Report the phishing domain to local cybersecurity authorities, the registrar (ABOVE.COM PTY LTD), and platforms like Google Safe Browsing or PhishTank to aid in broader mitigation efforts.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 3 identified
Suite of cloud computing services running on Google infrastructure.
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Content delivery network built on Google global edge infrastructure.
Аналіз VirusTotal
Архівні докази
Аналіз конфігурації сайту
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога