kzhjz[.]cn
“欧易交易所-欧易app下载_okx支持usdt交易app-欧意交易所下载”
kzhjz.cn — Контент недоступний. Уособлення бренду: ["okx"]; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 17/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLQuery 1 alert; CF Radar malicious; PhishDestroy score 95/100. Реєстратор: 阿里云计算有限公司(万网).
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain is flagged for elevated-risk brand impersonation targeting OKX, a prominent cryptocurrency exchange platform. The fraudulent site mimics the legitimate OKX interface, as evidenced by its page title '欧易交易所-欧易app下载_okx支持usdt交易app-欧意交易所下载,' which directly references OKX branding and associated services. Such impersonation is typically designed to deceive users into disclosing login credentials or downloading malicious applications, enabling unauthorized access to cryptocurrency wallets or accounts.
Technical analysis reveals multiple indicators of malicious activity. The domain kzhjz.cn was registered on February 21, 2026, through 阿里云计算有限公司 (Alibaba Cloud Computing Co., Ltd.), a registrar frequently utilized in phishing campaigns due to its accessibility. It resolves to the IP address 104.21.20.193, hosted on AS13335 (Cloudflare, Inc.), a common proxy service employed to obfuscate the true origin of malicious infrastructure. The domain appears on one security blocklist, specifically PhishDestroy, and is detected by 17 out of 95 security vendors on VirusTotal, indicating moderate consensus on its malicious nature. The SSL certificate is issued by Google Trust Services (WE1), which, while not inherently suspicious, is often leveraged by threat actors to lend a veneer of legitimacy to phishing sites. Notably, the domain's creation date is anomalous, as it is set in the future (2026), a tactic occasionally used to evade detection by security systems that prioritize recently registered domains.
Mitigation against such brand impersonation threats requires a multi-layered approach. Organizations should implement domain monitoring to detect newly registered domains containing their brand names or trademarks, particularly those registered through high-risk registrars or proxied via content delivery networks. End-users should be educated to verify the authenticity of websites by cross-referencing URLs with official sources and scrutinizing SSL certificate details. Cryptocurrency exchange users, in particular, should enable multi-factor authentication and avoid downloading applications from unverified sources. Network-level protections, such as DNS filtering or web proxy solutions, can block access to known malicious domains like kzhjz.cn. Additionally, security teams should monitor for anomalous login attempts or unauthorized transactions originating from users who may have interacted with such phishing sites.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | kzhjz.cn |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 4 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of kzhjz.cn · checked Mar 1, 2026
Докази та зовнішні звіти
PD-20260124-8763AE Recipient: dsgeferew@hotmail.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога