Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is s16625644@gmail.com.
The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
okpayshoujibanxiazaigw[.]com[.]cn
“OKPAY手机版下载 - 移动支付与资产管理平台”
okpayshoujibanxiazaigw.com.cn — Неперевірений. Зведення доказів: VirusTotal 19/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); URLQuery 2 alerts; CF Radar malicious; PhishDestroy score 95/100. Реєстратор: Web Commerce Communica….
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain okpayshoujibanxiazaigw.com.cn presents itself as an OKPAY mobile download platform, aiming to deceive users into divulging sensitive information. Despite its offline status, this domain has already been flagged by 18 out of 91 vendors on VirusTotal, indicating a significant threat during its active period.
The domain's page title, "OKPAY手机版下载 - 移动支付与资产管理平台," suggests a focus on mobile payment and asset management, likely targeting users of the legitimate OKPAY service. PhishDestroy has included this domain in its public blocklist, highlighting its potential for harm. The domain's SSL certificate was issued by Let's Encrypt, a common choice for malicious actors due to its free and automated nature.
Although the domain is currently offline, its previous activity underscores the importance of early detection and response. The presence of the domain on VirusTotal and a public blocklist reflects its malicious intent. The hosting IP, 154.194.137.79, may also be associated with other malicious activities, warranting further investigation. This case exemplifies the ongoing battle against phishing domains that exploit brand trust to execute their schemes.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | okpayshoujibanxiazaigw.com.cn |
malicious | Sinkholed |
| Cloudflare DNS | okpayshoujibanxiazaigw.com.cn |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 3 identified
Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 100% впевненостіNginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіАналіз VirusTotal
Докази та зовнішні звіти
PD-20260524-FCA24B Recipient: s16625644@gmail.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога