w6-okx[.]com[.]cn
“欧æOKXå®ç½æ³¨åä¸è½½-2026ææ°çOKX交ææAPPä¸è½½|å®å认è¯éç¦å©”
Riepilogo delle prove
PhishDestroy identifies w6-okx.com.cn as an active brand impersonation site targeting OKX users. This domain resolves to IP 188.114.96.3 and was registered on March 20, 2026 through 浙江贰贰网络有限公司, leveraging a Let’s Encrypt SSL certificate to appear legitimate. VirusTotal currently shows 4/95 detections, indicating it has evaded detection by most antivirus engines. No confirmed listings on major blocklists such as PhishTank, OpenPhish, or URLVoid were detected at the time of analysis. While the domain is flagged as 'under_investigation,' its recent registration, lack of detection coverage, and use of a reputable SSL issuer suggest an emerging threat designed to harvest login credentials under the guise of a trusted exchange platform.
Technical indicators include the domain’s association with IP 188.114.96.3, which has no known reputation for legitimate OKX services and is hosted on infrastructure often associated with low-cost, high-risk deployments. The domain’s name—w6-okx.com.cn—explicitly impersonates the OKX brand with the 'w6' prefix likely intended to bypass simple keyword filters. The use of .com.cn (China’s ccTLD) and registration through a domestic registrar may indicate targeting of Chinese-speaking users or an attempt to exploit regional trust dynamics. Despite the absence of detections, the combination of brand impersonation, recent domain age, and hosting on a shared IP with minimal reputation signals a high-risk scam in early deployment.
To mitigate exposure, users should immediately block w6-okx.com.cn at the network and DNS levels and avoid accessing the site under any circumstances. Enable multi-factor authentication (MFA) on all OKX accounts and verify login URLs against the official OKX website (okx.com). Report any interactions with this domain to OKX support and your local cybercrime unit. Organizations are advised to update threat intelligence feeds to include this domain and monitor for similar patterns in domain registration or hosting behaviors. Proactive user education on recognizing impersonation tactics and verifying official channels remains essential to prevent credential theft and financial loss.
Istantanea delle prove inviate
- Inviato
- Voci del registro
- 1
- ID del caso
PD-20260427-E1757C- Titolo della pagina acquisita
- 欧易OKX官网注册下载-2026最新版OKX交易所APP下载|实名认证送福利
- Artefatto PDF
- Prova in PDF
Base giuridica
Testo completo delle prove
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Informazioni sulla sicurezza di rete
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | w6-okx.com.cn |
malicious | Sinkholed |
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 13/08/2026
8 fonti esterne monitorate Nessuna corrispondenza
Tecnologie
5 tecnologie identificate con alta affidabilità
Analisi di VirusTotal
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo