Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@internetx.com.
The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
heineken-jobs[.]com
heineken-jobs.com — 未验证. 诈骗类型:Generic Phishing. 证据摘要: VirusTotal 5/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); URLQuery 6 alerts; PhishDestroy score 75/100. 注册商: Name.com.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, heineken-jobs.com, operates as a fraudulent employment portal designed to deceive job seekers into submitting personal and professional information under the guise of legitimate Heineken recruitment. The site mimics official career pages, prompting visitors to enter sensitive credentials, including full names, contact details, work history, and even financial data for purported background checks. Such information is commonly exploited for identity theft, targeted phishing campaigns, or sold on underground markets to facilitate further fraud. Analysis indicates this domain was registered on May 23, 2026, through Name.com, Inc., an unusually future-dated creation that may suggest domain spoofing or registry manipulation. At the time of detection, it resolved to the IP address 91.195.240.94 and was flagged by 5 out of 95 security vendors on VirusTotal, including classification as a phishing threat. The domain also appeared on one security blocklist and was assigned a trust score of 0/100, reflecting high-risk indicators such as suspicious infrastructure and known associations with malicious activity. If you visited heineken-jobs.com or submitted any information through the site, immediate action is required. Discontinue all interaction with the domain and any communications linked to it. Change passwords for any accounts that may have been exposed, particularly those using similar credentials. Monitor financial statements and credit reports for unauthorized activity, and consider placing a fraud alert with credit bureaus. Report the incident to local cybercrime authorities and provide any suspicious emails or messages for further investigation. Employers and job seekers should verify recruitment communications directly through official corporate channels to avoid similar threats.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | theresultsearch.com |
malicious | Sinkholed |
| Hagezi Threat Feed | theresultsearch.com |
malicious | Sinkholed |
| Quad9 DNS | theresultsearch.com |
malicious | Sinkholed |
| DNS4EU | nowsearchnet.com |
malicious | Sinkholed |
| DigiCert UltraDNS | l.cdn-fileserver.com |
malicious | Sinkholed |
| DigiCert UltraDNS | s.cdn-fileserver.com |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 分析
证据与外部报告
PD-20260612-8680BA Recipient: abuse@internetx.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。