zoommcall[.]com
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of zoommcall[.]com
zoommcall[.]com appears to present itself as a download or landing page for Zoom-related software, using branding and page layout that resemble a software listing or app storefront. The screenshot shows references to “Zoom for Meetings” and “Zoom – One Platform to Connect,” along with Microsoft-style navigation elements, suggesting the page may be attempting to look like an official software distribution page.
Based on the domain name and visible content, the site does not appear to be the official Zoom domain. Instead, it may be a third-party page imitating a well-known communications platform in order to encourage visitors to click an install button or download software. The domain was registered very recently, and no clear evidence in the provided data identifies it as being operated by Zoom Video Communications or Microsoft.
Safety Assessment for zoommcall[.]com
This domain raises substantial concerns based on the available scan data. At the time of this scan, 20 out of 91 security engines flagged the site, and multiple web-classification sources categorized it as phishing, malware, fraud-related, or a newly registered suspicious website. While one malware scan reported no flagged files, that result does not outweigh the broader pattern of detections and the highly suspicious presentation.
The domain name closely resembles Zoom branding while adding an extra term, and the screenshot appears designed to mimic a legitimate software or app-store page. That resemblance may indicate a look-alike site intended to mislead users into trusting the page or downloading unwanted software. The combination of strong brand resemblance, very recent registration, lack of ranking, and numerous security detections is commonly associated with phishing or malware delivery campaigns.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was using a valid Let's Encrypt SSL certificate at the time of this scan, hosted on an nginx/1.18.0 (Ubuntu) server at IP address 91.202.233.170, with hosting attributed to Prospero OOO and geolocation data pointing to Ashgabat, Turkmenistan. A valid certificate only indicates encrypted transport and should not be treated as proof of legitimacy.
The domain was only 3 days old at the time of review, had no Tranco ranking, and DNSSEC was unsigned. It used DNSPod nameservers. Extremely young domains, unsigned DNSSEC, and infrastructure that does not obviously align with the impersonated brand can be risk indicators, especially when combined with phishing-related detections and a page that appears to imitate a well-known service.
Share your experience with this website. Was it safe? Did you encounter any issues?