cyboshoke[.]com
“CYBERSHOKE – CS2 Servers (CSGO)”
PhishDestroy identifies cyboshoke.com as an active domain engaged in brand impersonation targeting OKX, a major cryptocurrency exchange. This threat is classified as elevated due to the domain’s deceptive similarity to legitimate brand assets and the potential for financial fraud. The site currently resolves to a Google Trust Services SSL-validated IP address (188.114.97.3), suggesting an attempt to appear legitimate at first glance. Users accessing this domain risk exposure to credential theft, fraudulent transactions, or malware delivery through spoofed login portals or counterfeit OKX interfaces.
This domain was flagged by 3 of 95 VirusTotal security vendors, indicating early but measurable suspicion among threat intelligence platforms. The domain was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED on February 23, 2025, and despite its recent creation, its association with known impersonation tactics and low trust scores across multiple services warrants immediate caution. The presence of a Google Trust Services SSL certificate does not validate the site’s legitimacy—it merely confirms the encryption layer, not the authenticity of the entity behind the domain.
PhishDestroy assesses cyboshoke.com as an elevated-risk threat due to its clear intent to deceive users into believing it is an official OKX platform. Given its recent registration and partial detection rate, the domain remains active and accessible. All users are advised to avoid interacting with cyboshoke.com or any linked platforms. Cryptocurrency traders should verify URLs through official OKX channels and use browser protections or security extensions to block known malicious domains. Organizations are urged to update threat intelligence feeds with this domain’s indicators (IP 188.114.97.3, registration date, and registrar) to prevent accidental exposure. Immediate reporting to cybersecurity teams and domain registrars is recommended to support takedown efforts.
Gönderilen rapor kaydı
Gönderilen kanıt anlık görüntüsü
- Gönderildi
- Kayıt defteri kayıtları
- 1
- Vaka kimliği
PD-20260327-12A732- Yakalanan sayfa başlığı
- CYBERSHOKE – CS2 Servers (CSGO)
- PDF belgesi
- PDF kanıtı
Kanıtın tam metni
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Ağ Güvenliği İstihbaratı Registrar context
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 kaynak · 10.08.2026 tarihinde eşitlendi
Tespit zaman çizelgesi
Kaydedilmiş gözlemler kronolojik sıradadır.
-
Erişilebilirlik
Erişilebilirlik: ilk kez dns_inactive olarak gözlemlendi
f93a11f87e4d -
Erişilebilirlik
Erişilebilirlik: dns_inactive → unknown
de16bc2834dc -
Erişilebilirlik
Erişilebilirlik: unknown → dns_inactive
ae25b4cab8f2 -
Erişilebilirlik
Erişilebilirlik: dns_inactive → inactive
7939dad626ad -
Erişilebilirlik
Erişilebilirlik: inactive → dns_inactive
f52d526b76a1 -
Erişilebilirlik
Erişilebilirlik: dns_inactive → unknown
feae6d8a86e8 -
Erişilebilirlik
Erişilebilirlik: unknown → inactive
f502fb92d0e0 -
Erişilebilirlik
Erişilebilirlik: inactive → unknown
a85c85edf5ac -
Erişilebilirlik
Erişilebilirlik: unknown → dns_inactive
6dfe9145995c -
Erişilebilirlik
Erişilebilirlik: dns_inactive → inactive
c80105d3100c
Tümünü göster (6)
-
Erişilebilirlik
Erişilebilirlik: inactive → dns_inactive
641ed81dc4d5 -
Erişilebilirlik
Erişilebilirlik: dns_inactive → unknown
460f0a7de3d4 -
Erişilebilirlik
Erişilebilirlik: unknown → inactive
4d61371e8ea5 -
Erişilebilirlik
Erişilebilirlik: inactive → unknown
3b59e6fa4266 -
Erişilebilirlik
Erişilebilirlik: unknown → dns_inactive
d0b7046e8c2f -
Erişilebilirlik
Erişilebilirlik: dns_inactive → inactive
65058c209b8f
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Adli İstihbarat
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of cyboshoke.com · checked Mar 27, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin