cdnbinance[.]com[.]cn
Análisis de phishing y seguridad de cdnbinance.com.cn
“cdnbinance.com.cn”
cdnbinance.com.cn — Encubierto · accesible (HTTP 499). Suplantación de marca: Binance; Tipo de estafa: Credential Phishing. Resumen de las pruebas: VirusTotal 3/91 (Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); cloaking observed; PhishDestroy score 65/100. Registrador: 福州中旭网络技术有限公司.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
This domain, cdnbinance.com.cn, presents a direct threat to users of the Binance cryptocurrency exchange platform by masquerading as an official content delivery network endpoint. The site is engineered to harvest login credentials, two-factor authentication codes, and other sensitive account details through deceptive login portals that replicate Binance’s legitimate interface. Given the high-value nature of cryptocurrency accounts, successful phishing attempts could result in immediate financial theft, unauthorized transactions, and irreversible asset loss. The domain’s infrastructure is designed to exploit user trust in Binance’s branding, leveraging visual and functional mimicry to deceive even security-conscious individuals. Analysis of the domain’s technical indicators confirms its malicious intent. The domain was registered on July 5, 2026, through 福州中旭网络技术有限公司, a registrar frequently associated with phishing and fraudulent domains. VirusTotal detection metrics reveal that 1 of 95 security vendors has flagged cdnbinance.com.cn as malicious, a low but notable detection rate that suggests either evasion techniques or recent deployment. The domain resolves to the IP address 188.114.96.3, which has been observed in prior phishing campaigns targeting financial services. Additionally, the SSL certificate issued by Google Trust Services provides a false sense of security, as users may interpret the presence of HTTPS as legitimacy. AlienVault OTX records further corroborate the threat, with the domain appearing in at least one threat intelligence pulse, indicating its inclusion in active phishing tracking efforts. Users who have visited cdnbinance.com.cn or entered credentials on the site should assume their account has been compromised. Immediate action is required: revoke all active sessions on the legitimate Binance platform, enable two-factor authentication if not already active, and monitor account activity for unauthorized transactions. Change passwords for Binance and any other platforms where the same credentials were reused. If financial losses have occurred, report the incident to local law enforcement and relevant financial authorities. Forensic analysis of the device used to access the phishing site is recommended to check for malware or persistent threats. Organizations should update their email and web filtering rules to block cdnbinance.com.cn and its associated IP address, 188.114.96.3, to prevent further exposure. Vigilance against similar domains, particularly those using slight variations of legitimate brand names, is critical in mitigating future risks.
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Tecnologías · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100 % de confianzaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % de confianzaAnálisis de VirusTotal
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.