Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@tencent.com.
The latest stored availability evidence still shows the domain reachable; 16 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
mchajyd[.]us[.]cc
“Maxis: Postpaid Plan, Home Internet and More | Telco Company”
mchajyd.us.cc — Erro no servidor (HTTP 502). Representação da marca: Apple; Tipo de golpe: Impersonation. Resumo das evidências: VirusTotal 11/91 (alphaMountain.ai, Cluster25, CRDF, ESET, Forcepoint ThreatSeeker); URLQuery 2 alerts; Spamhaus DBL_PHISH; PhishDestroy score 83/100. Registrador: Gname.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Analysis of the domain mchajyd.us.cc shows it is actively resolving to the IPv4 address 43.133.41.74. The domain was originally registered on 07 April 2006 through Gname.com Pte. Ltd. and continues to be live as of the report date. Its authoritative name servers are a.rsp-dns.com, b.rsp-dns.com, ns1.domainnamens.com and ns2.domainnamens.com, a configuration that is commonly observed in malicious infrastructure.
The domain appears on a single security blocklist and has been explicitly blocked by the PhishDestroy feed, indicating that threat intelligence providers have identified it as malicious. VirusTotal scans have returned five positive detections out of ninety‑one submitted security vendors, reinforcing the suspicion of phishing activity. No additional public metadata such as page title, SSL certificate details, or Safe Browsing verdicts are available, so the exact content hosted at the address remains unverified.
However, the combination of an active DNS resolution, a history of blocklist inclusion, and multiple vendor detections meets the criteria for a high‑risk phishing indicator. Defensive teams should add 43.133.41.74 and the domain name to outbound and inbound filtering rules, monitor for any DNS changes, and consider sinkholing the host if possible. Continuous re‑evaluation is recommended in case the site’s payload evolves, and any observed traffic should be logged for forensic correlation with credential‑theft incidents.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Cruzamento de inteligência de ameaças · source references
Tecnologias · 19 identified
Adobe Experience Manager (AEM) is a content management solution for building websites, mobile apps and forms.
www.adobe.com 100% de confiançaJava is a class-based, object-oriented programming language that is designed to have as few implementation dependencies as possible.
java.com 100% de confiançaBootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 100% de confiançaApache is a free and open-source cross-platform web server software.
httpd.apache.org 100% de confiançaDynatrace is a technology company that produces a software intelligence platform based on artificial intelligence to monitor and optimise application performance and development, IT infrastructure, and user experience for businesses and government agencies throughout the world.
www.dynatrace.com 100% de confiançaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaMicrosoft Advertising is an online advertising platform developed by Microsoft.
ads.microsoft.com 100% de confiançajQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% de confiançaInsider is the first integrated Growth Management Platform helping digital marketers drive growth across the funnel, from Acquisition to Activation, Retention, and Revenue from a unified platform powered by Artificial Intelligence and Machine Learning.
useinsider.com 100% de confiançaImperva is a cyber security software and services company for networking, data, and application security.
www.imperva.com 100% de confiançaHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaGoogle Tag Manager is a tag management system (TMS) that allows you to quickly and easily update measurement codes and related code fragments collectively known as tags on your website or mobile app.
www.google.com 100% de confiançaGoogle Analytics is a free web analytics service that tracks and reports website traffic.
google.com 100% de confiançaFacebook pixel is an analytics tool that allows you to measure the effectiveness of your advertising.
facebook.com 100% de confiançaDynatrace RUM is a AI powered, full stack, automated real user monutoring platform built by Dynatrace.
www.dynatrace.com 100% de confiançaPopper is a positioning engine, its purpose is to calculate the position of an element to make it possible to position it near a given reference element.
popper.js.org 100% de confiançaLottieFiles is an open-source animation file format that's tiny, high quality, interactive, and can be manipulated at runtime.
lottiefiles.com 100% de confiançaAnálise do VirusTotal
Evidências arquivadas
Evidências e relatórios externos
PD-20260729-C07E8E Recipient: abuse@tencent.com Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo