zoomfx[.]io
“ZoomFx”
证据摘要
ZoomFx.io was registered on May 28, 2026 and resolves to 118.139.182.100, an address hosted in Singapore and associated with GoDaddy's infrastructure. The site presents a valid Let's Encrypt R12 certificate and returns HTTP 200 with the page title “ZoomFx”. An MX record (mail.zoomfx.io) is configured, indicating the domain can receive email. Analysis on VirusTotal shows that 3 of 95 security vendors have flagged the domain, and the host appears on three public blocklists. The domain is currently listed as active and classified as a high‑risk generic phishing operation. The limited vendor consensus suggests the payload may be evolving or that detection signatures are still emerging. Open questions remain regarding the specific content delivered to victims. No malware samples or URLs beyond the landing page have been observed, and the branding hints toward a possible impersonation of Zoom services, but no direct references to the Zoom brand are present in the captured page title. The presence of an MX record suggests the operators may also be attempting credential harvesting via email. Defenders should add zoomfx.io to outbound and inbound filters, monitor DNS queries for the IP address 118.139.182.100, and enforce TLS inspection to detect any credential submission. Email gateways should block or quarantine messages from mail.zoomfx.io, and security teams should continue to track updates on blocklists and VirusTotal for additional detections.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
域名情报
技术详情DNS、TLS 名称和时间戳
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控