Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 14 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
mchajyd[.]us[.]cc
“Maxis: Postpaid Plan, Home Internet and More | Telco Company”
Сводка доказательств
Analysis of the domain mchajyd.us.cc shows it is actively resolving to the IPv4 address 43.133.41.74. The domain was originally registered on 07 April 2006 through Gname.com Pte. Ltd. and continues to be live as of the report date. Its authoritative name servers are a.rsp-dns.com, b.rsp-dns.com, ns1.domainnamens.com and ns2.domainnamens.com, a configuration that is commonly observed in malicious infrastructure.
The domain appears on a single security blocklist and has been explicitly blocked by the PhishDestroy feed, indicating that threat intelligence providers have identified it as malicious. VirusTotal scans have returned five positive detections out of ninety‑one submitted security vendors, reinforcing the suspicion of phishing activity. No additional public metadata such as page title, SSL certificate details, or Safe Browsing verdicts are available, so the exact content hosted at the address remains unverified.
However, the combination of an active DNS resolution, a history of blocklist inclusion, and multiple vendor detections meets the criteria for a high‑risk phishing indicator. Defensive teams should add 43.133.41.74 and the domain name to outbound and inbound filtering rules, monitor for any DNS changes, and consider sinkholing the host if possible. Continuous re‑evaluation is recommended in case the site’s payload evolves, and any observed traffic should be logged for forensic correlation with credential‑theft incidents.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260729-C07E8E- PDF-файл
- PDF с доказательствами
Полный текст доказательств
Policy Violations: Illegal Activities section forbids phishing, fraud, fake sites, malware distribution; registrar investigates and may suspend or delete domain
Applicable Laws: Computer Misuse Act 1993 §§3+, Penal Code §§415–420 (cheating), Online Criminal Harms Act (OCHA)
Data Coverage
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Первая запись
Первое сохранённое значение: Доступен
-
Статус домена
Доступен → Недоступен
-
Статус домена
Недоступен → Доступен
Технологии
Выявлено 19 технологий с высокой уверенностью
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание