kzhjz[.]cn
“欧易交易所-欧易app下载_okx支持usdt交易app-欧意交易所下载”
kzhjz.cn — İçerik kullanılamıyor. Marka kimliğine bürünme: ["okx"]; Dolandırıcılık türü: Crypto Scam. Kanıt özeti: VirusTotal 17/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLQuery 1 alert; CF Radar malicious; PhishDestroy score 95/100. Kayıt kuruluşu: 阿里云计算有限公司(万网).
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
This domain is flagged for elevated-risk brand impersonation targeting OKX, a prominent cryptocurrency exchange platform. The fraudulent site mimics the legitimate OKX interface, as evidenced by its page title '欧易交易所-欧易app下载_okx支持usdt交易app-欧意交易所下载,' which directly references OKX branding and associated services. Such impersonation is typically designed to deceive users into disclosing login credentials or downloading malicious applications, enabling unauthorized access to cryptocurrency wallets or accounts.
Technical analysis reveals multiple indicators of malicious activity. The domain kzhjz.cn was registered on February 21, 2026, through 阿里云计算有限公司 (Alibaba Cloud Computing Co., Ltd.), a registrar frequently utilized in phishing campaigns due to its accessibility. It resolves to the IP address 104.21.20.193, hosted on AS13335 (Cloudflare, Inc.), a common proxy service employed to obfuscate the true origin of malicious infrastructure. The domain appears on one security blocklist, specifically PhishDestroy, and is detected by 17 out of 95 security vendors on VirusTotal, indicating moderate consensus on its malicious nature. The SSL certificate is issued by Google Trust Services (WE1), which, while not inherently suspicious, is often leveraged by threat actors to lend a veneer of legitimacy to phishing sites. Notably, the domain's creation date is anomalous, as it is set in the future (2026), a tactic occasionally used to evade detection by security systems that prioritize recently registered domains.
Mitigation against such brand impersonation threats requires a multi-layered approach. Organizations should implement domain monitoring to detect newly registered domains containing their brand names or trademarks, particularly those registered through high-risk registrars or proxied via content delivery networks. End-users should be educated to verify the authenticity of websites by cross-referencing URLs with official sources and scrutinizing SSL certificate details. Cryptocurrency exchange users, in particular, should enable multi-factor authentication and avoid downloading applications from unverified sources. Network-level protections, such as DNS filtering or web proxy solutions, can block access to known malicious domains like kzhjz.cn. Additionally, security teams should monitor for anomalous login attempts or unauthorized transactions originating from users who may have interacted with such phishing sites.
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | kzhjz.cn |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 4 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal Analizi
Arşivlenmiş Kanıtlar
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of kzhjz.cn · checked Mar 1, 2026
Kanıtlar ve Dış Raporlar
PD-20260124-8763AE Recipient: dsgeferew@hotmail.com Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin