kzhjz[.]cn
“欧易交易所-欧易app下载_okx支持usdt交易app-欧意交易所下载”
kzhjz.cn — Контент недоступен. Олицетворение бренда: ["okx"]; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 17/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLQuery 1 alert; CF Radar malicious; PhishDestroy score 95/100. Регистратор: 阿里云计算有限公司(万网).
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain is flagged for elevated-risk brand impersonation targeting OKX, a prominent cryptocurrency exchange platform. The fraudulent site mimics the legitimate OKX interface, as evidenced by its page title '欧易交易所-欧易app下载_okx支持usdt交易app-欧意交易所下载,' which directly references OKX branding and associated services. Such impersonation is typically designed to deceive users into disclosing login credentials or downloading malicious applications, enabling unauthorized access to cryptocurrency wallets or accounts.
Technical analysis reveals multiple indicators of malicious activity. The domain kzhjz.cn was registered on February 21, 2026, through 阿里云计算有限公司 (Alibaba Cloud Computing Co., Ltd.), a registrar frequently utilized in phishing campaigns due to its accessibility. It resolves to the IP address 104.21.20.193, hosted on AS13335 (Cloudflare, Inc.), a common proxy service employed to obfuscate the true origin of malicious infrastructure. The domain appears on one security blocklist, specifically PhishDestroy, and is detected by 17 out of 95 security vendors on VirusTotal, indicating moderate consensus on its malicious nature. The SSL certificate is issued by Google Trust Services (WE1), which, while not inherently suspicious, is often leveraged by threat actors to lend a veneer of legitimacy to phishing sites. Notably, the domain's creation date is anomalous, as it is set in the future (2026), a tactic occasionally used to evade detection by security systems that prioritize recently registered domains.
Mitigation against such brand impersonation threats requires a multi-layered approach. Organizations should implement domain monitoring to detect newly registered domains containing their brand names or trademarks, particularly those registered through high-risk registrars or proxied via content delivery networks. End-users should be educated to verify the authenticity of websites by cross-referencing URLs with official sources and scrutinizing SSL certificate details. Cryptocurrency exchange users, in particular, should enable multi-factor authentication and avoid downloading applications from unverified sources. Network-level protections, such as DNS filtering or web proxy solutions, can block access to known malicious domains like kzhjz.cn. Additionally, security teams should monitor for anomalous login attempts or unauthorized transactions originating from users who may have interacted with such phishing sites.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | kzhjz.cn |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 4 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of kzhjz.cn · checked Mar 1, 2026
Доказательства и внешние отчеты
PD-20260124-8763AE Recipient: dsgeferew@hotmail.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание