Analysis of macshix.us.cc shows a high‑risk phishing infrastructure that remains active as of the report date, July 30, 2026. The domain was registered through Gname.com Pte. Ltd. on April 07, 2006 and continues to resolve to the IPv4 address 43.133.41.74. Its authoritative name servers are a.rsp-dns.com, b.rsp-dns.com, ns1.domainnamens.com, and ns2.domainnamens.com, indicating a multi‑provider DNS configuration that can aid resilience against takedown attempts.
The domain appears on one external security blocklist and is specifically listed by PhishDestroy, confirming that reputable anti‑phishing feeds have identified it as malicious. VirusTotal scans show that three out of ninety‑one security vendors flagged the domain, providing independent detection evidence. No additional public intelligence such as Safe Browsing status, SSL certificate details, page title, or brand targeting is currently available, leaving the exact content and attack vector unverified.
Defenders should treat the domain as hostile: block macshix.us.cc at the DNS layer, add its resolving IP 43.133.41.74 to network‑level deny lists, and monitor the associated name servers for any changes that could indicate new malicious payloads. Continuous re‑scanning on VirusTotal or similar platforms is advised to capture any escalation in vendor detections. Given the age of the registration and the persistence of the infrastructure, the threat is likely to remain operational unless coordinated takedown actions are undertaken.