MALICIOUS — CRITICAL
maxbim[.]icu
PhishDestroy has identified maxbim.icu as an active phishing domain engineered to mimic a legitimate brand and harvest user credentials.
- VirusTotal
- 12/91
- Blocklists
- No stored match
- Disponibilidad
- Último activo conocido · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@whiteprivacy.com.
The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
maxbim.icu — Último activo conocido (HTTP 200). Tipo de estafa: Generic Phishing. Resumen de las pruebas: VirusTotal 12/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); URLQuery 1 det.; PhishDestroy score 100/100. Registrador: Global Domain Group.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
Evidence Analysis
Is maxbim.icu a Malicious Phishing Site? Security Alert
PhishDestroy identifies maxbim.icu as an active phishing domain posing as a generic brand lure. This domain, created March 17 2026, is flagged by 3 of 95.
PhishDestroy has identified maxbim.icu as an active phishing domain engineered to mimic a legitimate brand and harvest user credentials. The site leverages a recently issued Let’s Encrypt certificate to appear trustworthy while resolving to IP 163.61.188.2, a hosting provider known for accommodating fraudulent infrastructure. Users who encounter this domain should treat any login prompts as highly suspect and refrain from entering personal or financial information. This domain was registered through Global Domain Group LLC on March 17 2026, indicating a very recent campaign designed to fly under detection thresholds. VirusTotal analysis shows the domain is flagged by 3 of 95 participating security vendors, placing it in the elevated-risk category. Although the SSL certificate is valid, the combination of fresh registration, low detection rate, and suspicious hosting context heightens the likelihood of credential theft or malware delivery. If you have already visited maxbim.icu, assume your credentials may have been compromised and immediately change passwords used on that site. Scan local devices with updated antivirus software and review financial accounts for unauthorized transactions. Report the domain to your organization’s security team or to PhishDestroy’s threat-intel platform to aid in broader takedown efforts.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Cobertura de los datos14 recorded checks
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
ZONA SHORTDOT · PRUEBAS PÚBLICAS
.icu
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologías · 11 identified
Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 100 % de confianzaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100 % de confianzajQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100 % de confianzaGoogle Hosted Libraries is a stable, reliable, high-speed, globally available content distribution network for the most popular, open-source JavaScript libraries.
developers.google.com 100 % de confianzaFancyBox is a tool for displaying images, html content and multi-media in a Mac-style 'lightbox' that floats overtop of web page.
fancyapps.com 100 % de confianzaPopper is a positioning engine, its purpose is to calculate the position of an element to make it possible to position it near a given reference element.
popper.js.org 100 % de confianzaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % de confianzaAnálisis de VirusTotal
Evidencias archivadas
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of maxbim.icu · checked May 16, 2026
Datos y informes externosIndependent lookups and source reports
PD-20260516-6BFECB Recipient: abuse@whiteprivacy.com Victim safety and official reportingImmediate actions and verified reporting channels
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.