Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@tencent.com.
The latest stored availability evidence still shows the domain reachable; 24 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
maixys[.]us[.]cc
“Maxis: Postpaid Plan, Home Internet and More | Telco Company”
maixys.us.cc — Não verificado. Tipo de golpe: Credential Phishing. Resumo das evidências: VirusTotal 10/91 (alphaMountain.ai, Cluster25, CRDF, ESET, Forcepoint ThreatSeeker); URLQuery 2 alerts; Spamhaus DBL_PHISH; PhishDestroy score 84/100. Registrador: Gname.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Analysis indicates that the domain maixys.us.cc is actively used in a credential harvesting campaign. The domain resolves to the IPv4 address 43.133.41.74 and has been registered since 07 April 2006 through Gname.com Pte. Ltd. Its DNS configuration includes four name servers (a.rsp-dns.com, b.rsp-dns.com, ns1.domainnamens.com, ns2.domainnamens.com), suggesting the use of multiple authoritative providers to increase resilience. The domain appears on a single security blocklist and is currently blocked by the PhishDestroy service, confirming that at least one reputable sinkhole has identified it as malicious. VirusTotal scans show that two out of ninety‑five security vendors flagged the domain, providing independent corroboration of its malicious nature. No additional evidence such as SSL certificate details, HTTP response codes, page title, or brand targeting is available in the supplied intelligence, leaving the exact content and lure technique unconfirmed. The lack of public page analysis means defenders cannot rely on content‑based signatures; instead, infrastructure‑based controls should be prioritized. Recommendations include adding maixys.us.cc and its resolved IP 43.133.41.74 to network deny lists, monitoring DNS queries for the listed name servers, and ensuring that email filters block any messages containing URLs that resolve to this domain. Continuous re‑evaluation is advised, as further reconnaissance may reveal additional indicators of compromise.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 12 identified
Adobe Experience Manager (AEM) is a content management solution for building websites, mobile apps and forms.
www.adobe.com 100% de confiançaJava is a class-based, object-oriented programming language that is designed to have as few implementation dependencies as possible.
java.com 100% de confiançaBootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 100% de confiançaApache is a free and open-source cross-platform web server software.
httpd.apache.org 100% de confiançaDynatrace is a technology company that produces a software intelligence platform based on artificial intelligence to monitor and optimise application performance and development, IT infrastructure, and user experience for businesses and government agencies throughout the world.
www.dynatrace.com 100% de confiançaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaMicrosoft Advertising is an online advertising platform developed by Microsoft.
ads.microsoft.com 100% de confiançajQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% de confiançaInsider is the first integrated Growth Management Platform helping digital marketers drive growth across the funnel, from Acquisition to Activation, Retention, and Revenue from a unified platform powered by Artificial Intelligence and Machine Learning.
useinsider.com 100% de confiançaImperva is a cyber security software and services company for networking, data, and application security.
www.imperva.com 100% de confiançaHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaAnálise do VirusTotal
Evidências arquivadas
Evidências e relatórios externos
PD-20260720-4DB6D1 Recipient: abuse@tencent.com Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo