Security Scan Report: zoomwebapi.com

Submitted: Sep 15, 2026, 6:47:52 AMCompleted: Sep 15, 2026, 6:48:44 AMpubliccompleted

AI Security Verdict

High Risk

Confidence: 78%

7
Risk Score

Threat intelligence flags the primary domain zoomwebapi.com as APT Lazarus malware across 2 feeds, forcing a HIGH_RISK verdict despite a benign-looking default hosting placeholder page with no forms.

Risk Factors (3)
Primary domain flagged as APT Lazarus malware in multi-source threat intelligence
Domain unranked / no established reputation (low legitimacy score 10/100)
Hosting placeholder page provides no legitimate site identity
Domain age information unavailable

Details

Page Title

hwsrv-1339206.hostwindsdns.com — Host welcome page for

Scan Type

public

Domain Name Analysis

The domain 'zoomwebapi.com' uses the commercial generic top-level domain (.com) without a subdomain. The registrable portion 'zoomwebapi' spans 10 characters split between five vowels and 5 consonants. Segmentation suggests three words: zoom, web, api. Median word length comes out to three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://zoomwebapi.com

Page Load Overview

5.57s
Total Load Time
203 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:1,512 chars
Detector Agreement:100%

Website Classification

Primary Category

documentation technical57% confidence
Type: static
Method: ml+structural+ocr_tiebreaker

All Detected Categories

documentation technical
57%
technology software
33%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
223.254.201.174United States
AS54290Hostwinds LLC.
1104.17.207.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1142.250.154.95Google · CDNUnited States
AS15169Google LLC
1142.251.20.95Google · CDNUnited States
AS15169Google LLC
1142.251.13.94Google · CDNUnited States
AS15169Google LLC
1104.17.208.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
76--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1FB73CFB183B155B9094F4FC1AB463F587FA5B0AFD6568C24F66C0B8443C2D94EA075F8

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:LC8fVGPfNlA54lwdfmC2dafV+epJdl252NTGkTNijTTU2:5VQfNbyd+C2dafVxXdl252y

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:80664:uTKwICUAYgNYqCSACQAAILPukIWi4iTgAoMSIKY+BQTAB4JAxKAUuUhVrGTBBChEOgiADEwIANJFYEIGAOAGsFAJgBNAAjBG

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0303dbff879f8787
Perceptual Hash:bd252e1e52cfc838
Difference Hash:2e1e2a2e3e363f3f
Wavelet Hash:0103cbff879f8703
Color Hash:#c5b887

Other Hashes

Crop Resistant:2e1e2a2e3e363f3f

Scan History

Scan history not available

Unable to load historical scan data