cpr-broker[.]co
“CPR Broker”
ملخص الأدلة
PhishDestroy identifies cpr-broker.co as an active brand impersonation phishing domain targeting OKX users. This fraudulent site mimics the legitimate OKX platform to deceive visitors into surrendering sensitive login credentials or financial data. The domain resolution to IP 188.114.97.3 and recent SSL certificate issuance by Google Trust Services suggest an attempt to appear legitimate at first glance. Threat actors registered the domain through CNOBIN INFORMATION TECHNOLOGY LIMITED on February 16, 2026, indicating a newly established infrastructure actively engaged in deceptive operations. This domain poses a high risk due to its specific targeting of OKX users and its current lack of detection on VirusTotal, which shows 0/95 detections as of the latest scan. The technical indicators, including the IP resolution and SSL certificate, are consistent with phishing campaigns designed to bypass initial security checks. While the domain has not yet been widely flagged on blocklists, its recent creation and active status warrant immediate attention from security teams and users alike. The absence of detections highlights the sophisticated nature of this impersonation attempt, making it a critical threat to monitor. Users who have visited cpr-broker.co should immediately assess their exposure by checking for any entered credentials or financial information. If any data was submitted, users must change their OKX account passwords immediately and enable multi-factor authentication (MFA). Additionally, users should scan their devices for malware using reputable security software and monitor their accounts for unauthorized transactions. Reporting the domain to OKX and relevant cybersecurity authorities can help mitigate further risks. Proactive vigilance and swift action are essential to prevent potential financial or data loss from this phishing scam.
لقطة الأدلة المرسلة
- أُرسل
- سجلات الدفتر
- 1
- معرّف القضية
PD-20260526-CCB5BF- ملف PDF
- دليل PDF
الأساس القانوني
النص الكامل للدليل
Acceptable Use Policy (AUP): The domain cpr-broker.co is engaged in phishing activities, which constitute a violation of your AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The use of this domain for fraudulent purposes directly contravenes your TOS, which reserves the right to suspend or terminate services for such violations.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. federal law prohibits unauthorized access to computers and networks, which is applicable to phishing schemes.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud using electronic communications, including phishing.
Anti-Phishing Consumer Protection Act: This act seeks to combat phishing by imposing penalties on those who engage in deceptive practices online.
Regulatory Note: Failure to take immediate action against this domain may expose your organization to legal liability and regulatory scrutiny. Compliance with your AUP and TOS is essential to mitigate potential risks.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of cpr-broker.co · checked Mar 29, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب