Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@tencent.com.
The latest stored availability evidence still shows the domain reachable; 9 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
mzlisjx[.]us[.]cc
“Maxis: Postpaid Plan, Home Internet and More | Telco Company”
mzlisjx.us.cc — Ошибка сервера (HTTP 502). Сводка доказательств: VirusTotal 12/91 (alphaMountain.ai, Cluster25, ESET, Forcepoint ThreatSeeker, Fortinet); URLQuery 2 alerts; Spamhaus DBL_PHISH; PhishDestroy score 88/100. Регистратор: Gname.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain mzlisjx.us.cc is presently flagged as an active generic phishing site and assigned an elevated risk level. It appears on two public security blocklists and is explicitly blocked by the PhishDestroy and OpenPhish feed providers, indicating that multiple threat‑intel sources have identified it as malicious. VirusTotal analysis reports that four of ninety‑one scanning engines returned a malicious verdict, providing concrete vendor‑based confirmation of its hostile nature.
No additional infrastructure data—such as autonomous system number, hosting IP address, SSL certificate details, HTTP response codes, or Safe Browsing verdicts—are present in the current intelligence, leaving those attributes unverified. Defenders should ensure that mzlisjx.us.cc is added to local deny lists and that any outbound or inbound traffic to the domain is dropped at the network perimeter. Organizations employing web‑filtering or DNS‑sinkhole solutions that ingest PhishDestroy or OpenPhish feeds will already block the domain, but administrators must verify that these feeds are actively enabled and that policy updates have propagated across all enforcement points.
Continuous monitoring is advised: security teams should watch for changes in the number of vendor detections on VirusTotal, for appearance on additional blocklists, and for any new hosting or certificate information that may emerge. Given the domain’s presence on multiple reputable blocklists and the confirmed malicious detections, it should be treated as a confirmed phishing indicator, incorporated into incident‑response playbooks, and used to enrich detection rules for credential‑theft investigations.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 12 identified
Adobe Experience Manager (AEM) is a content management solution for building websites, mobile apps and forms.
www.adobe.com 100% уверенностиJava is a class-based, object-oriented programming language that is designed to have as few implementation dependencies as possible.
java.com 100% уверенностиBootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 100% уверенностиApache is a free and open-source cross-platform web server software.
httpd.apache.org 100% уверенностиDynatrace is a technology company that produces a software intelligence platform based on artificial intelligence to monitor and optimise application performance and development, IT infrastructure, and user experience for businesses and government agencies throughout the world.
www.dynatrace.com 100% уверенностиCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиMicrosoft Advertising is an online advertising platform developed by Microsoft.
ads.microsoft.com 100% уверенностиjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% уверенностиInsider is the first integrated Growth Management Platform helping digital marketers drive growth across the funnel, from Acquisition to Activation, Retention, and Revenue from a unified platform powered by Artificial Intelligence and Machine Learning.
useinsider.com 100% уверенностиImperva is a cyber security software and services company for networking, data, and application security.
www.imperva.com 100% уверенностиHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
PD-20260804-E57EC4 Recipient: abuse@tencent.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание