zoomd-maintain[.]com
zoomd-maintain.com 网络钓鱼与安全检查
zoomd-maintain.com — 内容不可用 (HTTP 502). 证据摘要: VirusTotal 8/95 (alphaMountain.ai, CyRadar, Forcepoint ThreatSeeker, Fortinet, Seclookup); PhishDestroy score 74/100. 注册商: Gname.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Evidence Analysis
This domain, zoomd-maintain.com, has been flagged with an elevated risk level due to its classification as a generic phishing threat. The domain was designed to deceive users into divulging sensitive information, potentially through fake login pages or credential harvesting forms. Despite being currently offline, the underlying infrastructure could be reactivated or reused for future attacks, making awareness and caution essential.
The threat intelligence gathered paints a concerning picture. VirusTotal reports that 8 out of 95 security vendors flag this domain as malicious, indicating widespread recognition of its danger. The domain was registered through Gname.com Pte. Ltd. and created on October 20, 2025, suggesting a very recent setup typical of short-lived phishing campaigns. It resolves to the IP address 172.67.204.110, which is associated with Cloudflare, a common choice for phishing sites due to its DDoS protection and anonymity features. AlienVault OTX found references to this domain in one threat intelligence pulse, and it appears on one security blocklist, confirming its presence in the threat landscape. Notably, the domain lacks an SSL certificate, a red flag for legitimate services that prioritize encryption.
Users who may have encountered zoomd-maintain.com should take immediate precautions. Since the threat is generic phishing, the primary risk is credential theft or installation of malware through deceptive links. If any credentials were entered, they should be changed immediately on the legitimate sites, and two-factor authentication should be enabled wherever possible. It is also advisable to run a full antivirus scan to check for any malware that may have been downloaded. Monitoring account statements and online activity for unusual behavior is recommended. Finally, report any interactions with this domain to relevant security teams or authorities to help dismantle the threat infrastructure.
数据覆盖范围12 recorded checks
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 分析
证据与外部报告Independent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。