Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
ouyich[.]cc
“Earn rewards when you get started on OKX | My referral code: 79849381 | OKX United States”
Ringkasan bukti
ouyich.cc was registered on 2026-03-29 through Dynadot Inc and is hosted on an AWS EC2 instance in the us-west-1 region (IP 54.215.31.113). The site presents a page titled “Earn rewards when you get started on OKX | My referral code: 79849381 | OKX United States”, indicating a brand‑impersonation attempt that leverages an airdrop‑style lure. Infrastructure analysis shows the server runs Nginx with OpenResty and serves a React application; additional components include ThreatMetrix, OneTrust, Naver Analytics, HSTS, and Google Tag Manager. The TLS certificate is issued by Let’s Encrypt (R13) and the initial HTTP response is a 302 redirect. Gridinsoft assigns a trust score of 0/100, and 12 of 94 VirusTotal scanners have flagged the domain. The domain is currently listed on one public blocklist and has been blocked by PhishDestroy. The phishing kit is identified as an “Airdrop Scam”. Risk is classified as high and the status remains active. Defenders should treat any traffic to ouyich.cc as malicious. Network sensors should block the resolved IP 54.215.31.113 and the associated CIDR ranges used by the us-west-1 AWS region. Email filters should flag messages that reference the referral code 79849381 or the OKX brand when accompanied by links to this domain. Because the site uses legitimate CDN and analytics services, standard URL‑based allowlists may be bypassed; therefore, rule sets should incorporate the registrar (Dynadot Inc) and the observed nameservers (ns1.dyna-ns.net, ns2.dyna-ns.net) as additional indicators of compromise. Continuous monitoring for new subdomains under the same registrar and for similar page titles is recommended, as the current evidence does not reveal whether the operator will reuse the infrastructure for other campaigns.
Snapshot bukti yang dikirim
- Dikirim
- Catatan buku besar
- 1
- ID kasus
PD-20260526-F98B1A- Judul halaman yang direkam
- Earn rewards when you get started on OKX | My referral code: 79849381 | OKX Europe
- Artefak PDF
- Bukti PDF
Teks bukti lengkap
Policy Violations: Acceptable Use forbids illegal content; Spam & Abuse Policy prohibits phishing, fraud, malware; Dynadot may disable DNS and suspend domains
Applicable Laws: CFAA 18 U.S.C. §1030, Wire Fraud 18 U.S.C. §1343, CAN-SPAM Act
Data Coverage
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | www.ouyiawotkc.com |
malicious | Sinkholed |
| Hagezi Threat Feed | www.ouyiawotkc.com |
malicious | Sinkholed |
| Hagezi Threat Feed | ouyich.cc |
malicious | Sinkholed |
| DNS4EU | ouyich.cc |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Cakupan daftar blokir
10 sumber eksternal dipantau · snapshot tersimpan 11/08/2026
Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of ouyich.cc · checked Mar 29, 2026
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive