maxcuru[.]com
Verificação de phishing e segurança de maxcuru.com
maxcuru.com — Não verificado. Resumo das evidências: VT 0/91; URLQuery 1 alert; URLScan capture; GSB no flag; BL 0; PD 58/100. Registrador: Dominet (HK).
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
maxcuru.com entered the PhishDestroy evidence set on Aug 7, 2026. The assembled evidence scores 58/100 (elevated).
One independent source is positive: URLQuery. URLQuery recorded 1 threat-system alert on Aug 7, 2026 at 11:16 UTC. The evidence is not unanimous. On Aug 7, 2026 at 11:16 UTC, VirusTotal recorded 0 detections among 91 engines; Google Safe Browsing returned no flag; URLScan captured the page. The external blocklist snapshot contained no matches on Aug 7, 2026 at 14:20 UTC. The 0/91 VirusTotal result therefore records detection disagreement at that collection time, not the absence of the later source findings.
The collector marked the hostname reachable on Aug 7, 2026 at 11:16 UTC, but did not retain the HTTP response code. Registration records for the domain list Dominet (HK) Limited as the registrar and Jul 31, 2026 as the creation date. Registration preceded first observation by 6 days. At collection time, the hostname resolved to 87.120.104.37 (AS211443 SINO WORLDWIDE TRADING LIMITED). The recorded endpoint location is Sandefjord, NO. DOM analysis completed on Aug 7, 2026 at 14:20 UTC; stored DOM score 0/100. The evidence archive retains 4 visual captures from PhishDestroy, URLScan, URLQuery, and Cloudflare Radar. TLS metadata lists Let's Encrypt as the certificate issuer with validity through Oct 31, 2026; checked Aug 7, 2026 at 13:02 UTC.
No page title was retained; the visual captures, not a title string, preserve the landing-page appearance. No target brand has been confirmed from stored page content; hostname wording alone is not treated as brand evidence. The 0/100 DOM score means that the DOM pass stored no scored indicators; it does not negate the independent source findings. The stored record does not establish the post-click interaction, and it does not claim a confirmed wallet-draining transaction or credential submission.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | maxcuru.com |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
A ICANN recebeu o pagamento. A responsabilização não chegou.
Para este gTLD, o registrador acima opera sob um contrato com a ICANN. A ICANN cobra taxas anuais, variáveis e baseadas em transações vinculadas a registros, renovações e transferências.
Credenciamento: monetizado. Responsabilização: verifique novamente mais tarde.
Então a mágica começa: a ICANN redige o RAA §3.18, o registrador investiga abusos dentro da própria base de clientes, e as vítimas entregam as provas de graça enquanto cada nível espera que outra pessoa aja. Se isso faz as vítimas se sentirem mais seguras, excelente — a fatura funcionou.
Tecnologias · 2 identified
WebAssembly (abbreviated Wasm) is a binary instruction format for a stack-based virtual machine. Wasm is designed as a portable compilation target for programming languages, enabling deployment on the web for client and server applications.
webassembly.org 100% de confiançaNginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% de confiançaEvidências arquivadas
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo