cyubershoke[.]com
“CYBERSHOKE – CS2 Servers (CSGO)”
cyubershoke.com — 未验证. 品牌冒充:Cs2; 诈骗类型:Fake Exchange. 证据摘要: VirusTotal 2/94 (alphaMountain.ai, SOCRadar); PhishDestroy score 56/100. 注册商: NiceNIC.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, cyubershoke.com, poses a direct threat to users of the OKX cryptocurrency exchange by impersonating its official branding. The site is designed to deceive visitors into entering sensitive account credentials, including usernames, passwords, and two-factor authentication codes, under the false pretense of legitimate OKX login or verification processes. Such impersonation attacks are commonly used to facilitate unauthorized access to user accounts, leading to financial theft, data exfiltration, or further exploitation of connected services. The elevated risk level assigned to this domain reflects its active targeting of a high-value financial platform and the potential for significant user harm. Analysis indicates cyubershoke.com was registered on March 27, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar frequently associated with malicious domains. The domain resolves to the IP address 172.67.185.95 and has been flagged by 2 out of 95 security vendors on VirusTotal, including detections for phishing and brand impersonation. Additional threat intelligence confirms its presence in one AlienVault OTX pulse and on a single security blocklist, further corroborating its malicious nature. The domain’s trust score of 0/100 from Gridinsoft underscores its lack of legitimacy, and its current offline status may indicate temporary takedown or evasion of detection. Users who visited cyubershoke.com should assume their credentials or other sensitive information may have been compromised. Immediate action is required: reset passwords for OKX and any other accounts where the same credentials were reused. Enable multi-factor authentication (MFA) if not already active, using app-based or hardware tokens rather than SMS-based methods. Monitor OKX account activity for unauthorized transactions or changes, and report any suspicious activity to the platform’s support team. Additionally, scan the device used to access the site for malware, as phishing domains often deploy malicious payloads or redirect to exploit kits. If financial loss is suspected, contact the relevant financial institution or cryptocurrency exchange to initiate fraud protocols.
网络安全情报 Registrar context
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-14 03:00:11 UTC
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of cyubershoke.com · checked Jun 26, 2026
证据与外部报告
PD-20260327-CB53AF Recipient: abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。