Indicator of Compromise Search
Bulk Lookup
✦ IPv4 Address ✦ Domain ✦ MD5/SHA1/SHA256 Hash ✦ URL
INDICATOR
zerophone.cc
Domain ⚠ 6 PULSE HITS
↓ CSV ↓ JSON
30
/100
MEDIUM
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
MEDIUM 30/100 confidence
Some evidence of suspicious activity. Further investigation recommended before action.
CLEAN LOW MED HIGH CRIT
0 25 50 75 100
OTX
20/30
6 pulses
VIRUSTOTAL
/35
N/A
ABUSEIPDB
/25
IPv4 only
URLHAUS
10/10
LISTED
General Information
Indicatorzerophone.cc
Whois Domainhttp://whois.domaintools.com/zerophone.cc
Typedomain
AlienVault OTX Analysis ↗ View on OTX
6
PULSE HITS
Pulse Hits 6
Indicator Type Domain
Threat Level
ASSOCIATED PULSES
PULSE NAMEDATE
AVrecon Malware-Infected Routers Exploited as Residential Proxies by SocksEscort 2026-04-04
AVrecon Malware-Infected Routers Exploited as Residential Proxies by SocksEscort 2026-03-18
EraNet 2024-12-24
URLHaus data - 09-08-2023 2023-08-09
Malware Proxy Service “SocksEscort’’ 2023-07-28
VirusTotal Analysis ↗ View on VirusTotal
⚠ VirusTotal rate limit reached. Try again shortly.
URLhaus (abuse.ch) ↗ View on URLhaus
⚠ LISTED
URLHAUS
URLs Found 3
ASSOCIATED URLs
URL STATUS / TYPE DATE
http://zerophone.cc/lumi/fmw.php offline 2023-08-09
http://zerophone.cc/ offline 2023-07-14
http://zerophone.cc/1 offline 2020-08-15