Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@transip.nl.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
ma-64consultancy[.]nl
“Web Mail”
ma-64consultancy.nl — Неперевірений. Уособлення бренду: Genericemail; Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 14/91 (alphaMountain.ai, BitDefender, Cluster25, CRDF, Emsisoft); URLQuery 1 alert; URLScan malicious verdict; PhishDestroy score 95/100. Реєстратор: team.blue nl.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain ma-64consultancy.nl, flagged by 4 out of 91 VirusTotal vendors, has been identified as a phishing threat. Despite its current offline status, the domain was previously active and hosted in the Netherlands by Combell NV, with its SSL certificate issued by Let's Encrypt. It was first detected by PhishDestroy in June 2026.
This domain has been listed on two public blocklists, including PhishDestroy and OpenPhish, indicating its malicious nature. The registrar, team.blue nl B.V., is known for hosting a variety of domains, but this particular one has been exploited for phishing activities. The domain's platform risk score of 56 out of 100 reflects a moderate level of threat, which aligns with its detection by multiple security vendors.
Phishing domains like ma-64consultancy.nl often exploit the critical window between registration and detection by antivirus vendors. This domain was created in November 2024, giving it ample time to operate before being flagged. Such domains typically target unsuspecting users by mimicking legitimate services or businesses, aiming to steal sensitive information. The early detection by PhishDestroy highlights the importance of proactive threat identification to mitigate potential damage.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | ma-64consultancy.nl/wp-content/uploads/obxilkj/1vwicrx/abtwiey/afg/jboypage-walker.html |
malware | Detects file containing Telegram Bot API |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Докази та зовнішні звіти
PD-20260622-88250A Recipient: abuse@transip.nl Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога