zzoom.pages.dev
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of zzoom.pages.dev
zzoom.pages.dev appears to be a Cloudflare Pages-hosted webpage presenting itself as a Zoom-related update page. The visible content uses Zoom branding, the page title is "Zoom Client Update," and the page tells visitors that their Zoom client is out of date before redirecting them to a supposed Microsoft Store destination. It also references an external document-sharing link and a local file named "microsoft-store.php," which suggests the page is designed as a transitional landing page rather than an official product homepage.
Based on the branding and wording shown in the screenshot, this page may be attempting to imitate a software update workflow associated with Zoom and Microsoft. However, the domain itself is a pages.dev subdomain rather than an official Zoom-owned domain, and the available scan data does not indicate that it is operated by Zoom Video Communications or Microsoft. In practical terms, it appears to function as a branded redirect page hosted on shared cloud infrastructure.
Safety Assessment for zzoom.pages.dev
The automated scan results are mixed. On the positive side, 0 out of 89 security engines detected malicious activity at the time of this scan, the malware scan reported no flagged files, and major threat-database checks shown here did not report active malware or phishing listings. The domain is also several years old, which can be a stabilizing signal compared with newly created disposable domains.
That said, there are meaningful trust concerns based on the page content itself. The domain closely resembles the Zoom brand while using an unofficial pages.dev subdomain, and the screenshot shows Zoom branding combined with a redirect message to a Microsoft Store-themed destination. That kind of brand resemblance and cross-brand redirect pattern may be consistent with look-alike or impersonation-style abuse, even when malware scanners do not detect payloads. In addition, the domain's IP address is listed on one mail-reputation blocklist, and one blacklist source returned a generic malicious-object style listing; these are weaker signals than multi-engine malware detections, but they still add caution.
Overall, the strongest concern here is not confirmed malware but the possibility that the page is imitating a trusted software-update experience. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid Let's Encrypt SSL certificate and is served through Cloudflare infrastructure, with hosting and web serving attributed to CloudFlare, Inc. The resolved server IP is 188.114.96.2, geolocated here to Toronto, Canada. DNS points to Cloudflare nameservers, and the domain is reported as approximately 6 years old.
DNSSEC appears to be unsigned, which is common but means DNS responses do not benefit from DNSSEC validation. No direct malware files or flagged external links were identified in the provided scan, but the use of a branded landing page on a shared-hosting subdomain and a redirect-oriented workflow may warrant additional scrutiny from a technical trust perspective.
Share your experience with this website. Was it safe? Did you encounter any issues?