Перейти до звіту про безпеку
⚠️
Цей домен було позначено як шкідливий
Системи безпеки повідомляють про виявлення: 12. Будьте дуже обережні — не вводьте облікові дані чи особисту інформацію.
Безпека домену та аналіз загроз

wwwmaxls[.]my

“Maxis: Postpaid Plan, Home Internet and More | Telco Company”

Загрозливий вердикт Критичний 98/100 оцінка доказів
Доступність Контент недоступний Вміст був недоступний під час останнього спостереження
Виявлення VirusTotal: 12/91
OTX: 1 ref 30.06.2026 1 Report Sent CDN
Огляд звіту

wwwmaxls.my — Контент недоступний (HTTP 502). Зведення доказів: VirusTotal 12/91 (alphaMountain.ai, BitDefender, Cluster25, CRDF, CyRadar); URLQuery 2 det.; PhishDestroy score 98/100. Реєстратор: NameMart.

Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.

Зведення доказів
КРИТИЧНИЙ
Посилання
34734A31
Оцінка
98/100

This domain, wwwmaxls.my, is an active credential phishing site designed to deceive users into disclosing sensitive login credentials, payment details, or personal information. The site impersonates Maxis, a legitimate telecommunications provider, by replicating its official branding, page layout, and content, including the exact page title 'Maxis: Postpaid Plan, Home Internet and More | Telco Company.' Such impersonation is a common tactic in phishing campaigns to exploit trust in established brands and trick victims into entering credentials or financial data under false pretenses. Analysis indicates this is not a legitimate Maxis portal but a fraudulent replica intended for malicious data harvesting. Infrastructure analysis reveals multiple technical indicators confirming the domain's malicious nature. The domain resolves to the IP address 43.133.41.74 and is flagged by 11 out of 95 security vendors on VirusTotal as malicious, specifically under the 'generic_phishing' category. The domain was registered on June 29, 2026, through the registrar NameMart Pte. Ltd., a date that is notably in the future, suggesting either a typographical error in registration records or an attempt to obfuscate the domain's true age. The SSL certificate is issued by Let's Encrypt, a legitimate certificate authority, which is frequently exploited by threat actors to lend a false sense of security to phishing sites. These indicators collectively point to a deliberately constructed phishing infrastructure. Users who have visited wwwmaxls.my or entered any information on the site should take immediate action to mitigate potential risks. First, cease all interaction with the domain and avoid clicking any links or downloading files from it. If credentials or payment details were submitted, change passwords immediately for all associated accounts, particularly those related to Maxis services, and enable multi-factor authentication where available. Monitor financial statements for unauthorized transactions and report any suspicious activity to the relevant financial institution. Additionally, scan the device used to access the site with updated security software to detect and remove any potential malware. Users are advised to verify the legitimacy of any communication or website claiming to be from Maxis by contacting the company directly through official channels.

VirusTotal
VirusTotal
12 det.
URLQuery
URLQuery
2 det.
OTX references
URLScan
URLScan
Сертифікат TLS
Let's Encrypt / YE1
Вік
2 mo New
Зафіксований статус
Контент недоступний 502
PhishDestroy
DestroyList
У списку
Reports Sent
1
Обсяг даних VirusTotal 12 / 91 URLQuery 2 det. PhishStats не перевірено OTX 1 community reference CF Radar scan completed URLScan capture збережений звіт URLScan verdict Аналіз завершено Блокування DNS не перевірено TLS valid certificate, 44d WHOIS 2 mo old Знімок екрана 2 captures · 2 sources Ланцюжок перенаправлень не досліджено

Процес реагування на загрози Pipeline

Відкриття
Checks
Reports
Доступність
13/13
Sent Report Recorded
Stored sent-report record for registrar NameMart Pte. Ltd., hosting provider, 2 abuse contacts
abuse@namemart.comabuse@tencent.com
30.06.2026

Статус у публічних блоклистах

Збережений знімок

Аналітика доменів

Домен
URLScan Verdict Аналіз завершено score 0 report ↗
Сервер / ASN Apache · AS19551 INCAPSULA - Incapsula Inc, US
IP Context Imperva shared edge origin IP hidden Репутація Edge-IP не пов’язана з цим доменом.
Реєстратор NameMart HK(HK)
IP-адреса 45.223.44.14 CDN
ГеолокаціяSG Singapore, SG
МережаAS19551 · AS132203 Tencent Building, Kejizhongyi Avenue
Зворотний пошук IPviewdns.info → rapiddns.io →
Початкова IP-адреса прихована за проксі CDN. Результати зворотного IP для крайової адреси містять непов’язаних орендарів; для пошуку джерела потрібен пасивний DNS або дані прозорості сертифіката.
РеєстраціяСтворено 29.06.2026 (45d · New) Expires 29.06.2027
Статус HTTP502 Error
Час до першої недоступності 3h
Що ми враховуємо Час, що минув від першого збереженого звіту про порушення до першого спостереження, що вміст був недоступний. Це не встановлює причину.
Що містить кожен звіт Збережені записи вихідних звітів можуть посилатися на докази, доступні на той час, наприклад вердикти постачальників, реєстраційні дані, деталі хостингу, класифікації або знімки екрана. Ця сторінка не визначає точного доставленого корисного навантаження, квитанції, підтвердження чи дії одержувача.
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Вперше виявлено30.06.2026
DOM Analysisanalyzed 07.07.2026score 98/100
IoC Extractionscanned 29.07.20260 wallet · 0 Telegram IoCs
Submitted URLhttp://wwwmaxls.my/5g
Сервери іменns1.domainnamens.comns2.domainnamens.com
TLS Fingerprint
TLS Observationvalid from 29.06.2026scanned 30.06.2026
Case ID
Заголовок сторінки
Maxis: Postpaid Plan, Home Internet and More | Telco Company
Сертифікат TLS
Valid transport encryption · Виданий Let's Encrypt / YE1 · valid for 44 days
Технології · 12 identified
Adobe Experience Manager
CMS

Adobe Experience Manager (AEM) is a content management solution for building websites, mobile apps and forms.

www.adobe.com 100% впевненості
Java
Programming languages

Java is a class-based, object-oriented programming language that is designed to have as few implementation dependencies as possible.

java.com 100% впевненості
Bootstrap
UI frameworks

Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.

getbootstrap.com 100% впевненості
Apache HTTP Server
Web servers

Apache is a free and open-source cross-platform web server software.

httpd.apache.org 100% впевненості
Dynatrace
Analytics

Dynatrace is a technology company that produces a software intelligence platform based on artificial intelligence to monitor and optimise application performance and development, IT infrastructure, and user experience for businesses and government agencies throughout the world.

www.dynatrace.com 100% впевненості
Cloudflare
CDN

Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.

www.cloudflare.com 100% впевненості
Unpkg
CDN

Unpkg is a content delivery network for everything on npm.

unpkg.com 100% впевненості
jQuery
JavaScript libraries

jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.

jquery.com 100% впевненості
Insider
Customer data platform

Insider is the first integrated Growth Management Platform helping digital marketers drive growth across the funnel, from Acquisition to Activation, Retention, and Revenue from a unified platform powered by Artificial Intelligence and Machine Learning.

useinsider.com 100% впевненості
Imperva
Безпека CDN

Imperva is a cyber security software and services company for networking, data, and application security.

www.imperva.com 100% впевненості
HSTS
Безпека

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

www.rfc-editor.org 100% впевненості
Google Tag Manager
Tag managers

Google Tag Manager is a tag management system (TMS) that allows you to quickly and easily update measurement codes and related code fragments collectively known as tags on your website or mobile app.

www.google.com 100% впевненості
Detected via Cloudflare Radar · Wappalyzer engine
Поскаржитися на цей домен Надішліть докази та допоможіть захистити інших

Аналіз VirusTotal

12 / 91 постачальників безпеки позначили цей домен
View on VT
Last analyzed
alphaMountain.ai
BitDefender
Cluster25
CRDF
CyRadar
ESET
Fortinet
G-Data
Google Safebrowsing
SOCRadar
Sophos
Webroot
Аналіз продуктивності сайту

Google PageSpeed Insights — mobile performance audit of wwwmaxls.my · checked Jun 30, 2026

35
Poor
Performance
FCP
3.89s
First Contentful Paint
LCP
8.31s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
1090ms
Total Blocking Time
SI
16.4s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

Докази та зовнішні звіти

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260630-610924 Recipient: abuse@namemart.com
Page title stored with report: loading
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 274.1 KB
Blocklist hits included with submission: OpenPhish

Чи вплинув на вас цей сайт?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.

Європол
Знайдіть офіційний канал звітності для вашої країни ЄС
National police directory
Остерігайтеся шахраїв, які обіцяють повернути втрачені кошти! Злочинці можуть знову зв’язатися з жертвами, видаючи себе за слідчих, адвокатів або агентів із відновлення. Не сплачуйте авансових зборів і не діліться обліковими даними. Дізнайтеся більше про шахрайство у сфері відшкодування збитків →

Зверніться до місцевих органів влади

Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.

Довідник 97 країн
Чернетка за допомогою штучного інтелекту — деталі інциденту обробляються постачальником штучного інтелекту Перегляньте та подайте його самостійно

Перевірити будь-який домен

Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування

Сканувати зараз

Повідомити про фішинг

Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту

Повідомити

Потокова стрічка про загрози

Останні звіти про фішинг і помічені зміни доступності

Відстежувати

Будьте в курсі подій, дбайте про свою безпеку

Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога

Потокова стрічка про загрози Оскаржити це оголошення
HTML · IFRAME

Вбудувати цей звіт

Поділіться цією інформацією про загрози на своєму веб-сайті або в блозі

embed.html
<iframe
  src="https://phishdestroy.io/uk/embed/domain/wwwmaxls.my"
  title="PhishDestroy threat report for wwwmaxls.my"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>