okxu489[.]com
Перевірка домену okxu489.com на фішинг і безпеку
“OKX”
okxu489.com — Прикритий · доступний (HTTP 502). Уособлення бренду: OKX; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 15/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLQuery 3 det.; CF Radar malicious; cloaking observed; PhishDestroy score 95/100. Реєстратор: NameSilo.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy first observed okxu489.com on Apr 21, 2026. The hostname explicitly references OKX; stored content metadata identifies the same apparent target. The captured page title is “OKX”. Stored page analysis classifies the content as brand impersonation. Current evidence score: 95/100 (critical).
Positive findings are stored from 4 sources: VirusTotal, DNS security resolvers, Cloudflare Radar, and URLQuery. VirusTotal recorded 15 detections among 94 engines: ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET, Emsisoft, Forcepoint ThreatSeeker, Fortinet, G-Data, Lionic, Netcraft, Seclookup, Sophos, VIPRE, Webroot on Jun 13, 2026 at 22:36 UTC. DNS security checks returned 1 blocking result across 12 tested policies: Brand Okx; no observation timestamp was retained. Cloudflare Radar classified the hostname as malicious and assigned the categories security threats and phishing; its verdict timestamp was not retained. URLQuery recorded 3 detections; no observation timestamp was retained. Non-positive and contextual checks: The separate external-blocklist snapshot contained no matches on Aug 8, 2026 at 06:20 UTC. Google Safe Browsing returned no flag on Apr 21, 2026 at 11:00 UTC. URLScan completed without a malicious verdict (score 0) on Jul 29, 2026 at 03:07 UTC. PhishStats returned no feed match on Apr 21, 2026 at 11:01 UTC.
Cloaking was recorded with HTTP 502 on Aug 7, 2026 at 01:21 UTC. The cloaking probe recorded content divergence conditional delivery at 2/100 on Aug 7, 2026 at 01:21 UTC: dead_http: raw=http_502; http=502; via=http_proxy. Registration records for the domain list NameSilo, LLC as the registrar and Apr 21, 2026 as the creation date. Registration and first observation occurred on the same UTC date. At collection time, the hostname resolved to 188.114.96.3 on AS13335 (Cloudflare, Inc.). The IP and ASN identify shared Cloudflare edge infrastructure; the origin server is not established by this address. DOM analysis on Jul 29, 2026 at 04:00 UTC returned 88/100. The evidence archive retains 2 visual captures from PhishDestroy and URLScan. TLS metadata lists Google Trust Services as the certificate issuer with validity through May 29, 2026; checked Apr 21, 2026 at 12:42 UTC.
The content indicators and 4 positive source findings support the current OKX-themed brand impersonation classification.
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 10 identified
ThinkPHP is an open-source PHP framework with MVC structure developed and maintained by Shanghai Topthink Company.
www.thinkphp.cn 100% впевненостіBootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 100% впевненостіVue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org 100% впевненостіProvide Support is a SaaS for customer service that includes live chat, real-time website monitoring, chat statistics.
www.providesupport.com 100% впевненостіjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога