okx-web3-usdt-trc20-00000000007[.]pages[.]dev
“OKX”
okx-web3-usdt-trc20-00000000007.pages.dev — Неперевірений. Уособлення бренду: OKX; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 13/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, Emsisoft); URLQuery 1 alert; Google Safe Browsing flagged; PhishDestroy score 100/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain okx-web3-usdt-trc20-00000000007.pages.dev is currently active and classified as a high-risk brand impersonation phishing site targeting OKX, a cryptocurrency exchange platform. Analysis confirms the domain is designed to deceive users into believing they are interacting with legitimate OKX services, as evidenced by the page title 'OKX' and the inclusion of cryptocurrency-related terms in the domain name. The threat type is explicitly categorized as brand impersonation, with the intent to harvest credentials or financial information from unsuspecting victims. Infrastructure analysis reveals the domain was registered through Cloudflare, Inc. on April 30, 2026, and resolves to the IP address 188.114.97.3, geolocated to Canada under Cloudflare’s network. The domain is flagged by Google Safe Browsing as phishing and appears on at least one security blocklist. VirusTotal detection metrics indicate that 13 out of 95 security vendors have identified the domain as malicious. The SSL certificate, issued by Google Trust Services (WE1), does not mitigate the risk, as phishing sites frequently leverage valid certificates to appear legitimate. As of the latest assessment, the domain remains active and continues to pose a significant threat. Organizations and end-users are advised to block access to this domain at the network level and implement real-time monitoring for related indicators of compromise. Users who may have interacted with this domain should immediately revoke any active sessions, reset credentials, and monitor for unauthorized transactions or account activity. Security teams are encouraged to correlate this domain with other known phishing infrastructure targeting cryptocurrency platforms to identify broader campaign patterns.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | okx-web3-usdt-trc20-00000000007.pages.dev |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога