lp-tokenfi-com[.]pages[.]dev
“Portals Presale powered by Genesis”
साक्ष्य सारांश
PhishDestroy identifies lp-tokenfi-com.pages.dev as an active brand impersonation threat specifically targeting OKX, a well-known cryptocurrency exchange. The domain is currently under investigation due to its suspicious nature and remains active at the time of analysis. This phishing domain was created on April 18, 2026, and is registered through Cloudflare, Inc., a common registrar for malicious sites seeking to obscure their origin. The domain resolves to IP address 172.66.45.46 and uses an SSL certificate from Google Trust Services / WE1. Despite being active, VirusTotal shows 0 out of 95 vendors have flagged the domain, which may indicate it is newly deployed or evading detection. However, it already appears on one security blocklist, suggesting some awareness among threat intelligence platforms. The page title, "Portals Presale powered by Genesis," is likely a lure to trick users into believing they are participating in a legitimate presale event associated with OKX. This aligns with typical brand impersonation tactics where attackers replicate the look and feel of a trusted brand to steal credentials or cryptocurrency. Given the specialized nature of the threat—brand impersonation of a crypto exchange—the risk is elevated for users who may be targeted through phishing emails or social media campaigns. PhishDestroy recommends that users avoid interacting with this domain entirely. If you have already visited the site, do not enter any personal information, passwords, or private keys. Change your OKX account credentials immediately and enable two-factor authentication. For organizations, block the domain at the network level and educate users about verifying URLs before engaging with presale or promotional offers. Continuous monitoring is advised, as the domain may evolve its tactics or redirect to additional malicious infrastructure.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | qwei2odjc8tbmcs98e.com |
malicious | Sinkholed |
| DNS4EU | qwei2odjc8tbmcs98e.com |
malicious | Sinkholed |
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of lp-tokenfi-com.pages.dev · checked Apr 18, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।