Most registrars and hosts consider phishing already malicious, even if there's no obvious malware download or anything.