Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@registrar.eu.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
jokerstash[.]cc
“jokerstash.cc”
jokerstash.cc — 隐形 · 可达. 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 16/91 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CyRadar, ESET); URLQuery 2 alerts; cloaking observed; PhishDestroy score 100/100. 注册商: Hosting Concepts.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain poses a high-risk threat by impersonating the OKX brand, a tactic often used in phishing schemes to deceive users into providing personal or financial information. The domain, jokerstash.cc, is currently active and has been reported for brand impersonation activities. Such domains typically aim to mislead users by mimicking legitimate brand websites, thereby facilitating unauthorized access to sensitive data.
Analysis indicates that jokerstash.cc has been flagged by 12 out of 95 security vendors on VirusTotal, underlining its malicious nature. The domain was registered through Hosting Concepts B.V. d/b/a Registrar.eu and has been active since December 1, 2019. It is currently listed on one security blocklist, notably blocked by PhishDestroy. The domain resolves to IP address 188.114.96.3, located in the United States under AS13335 Cloudflare, Inc. The SSL certificate is issued by Google Trust Services / WE1.
Users who have visited this domain should immediately check for any unauthorized activity on their accounts associated with OKX. It is recommended to change passwords and enable two-factor authentication for enhanced security. Additionally, reporting any suspicious interactions to relevant security teams can aid in mitigating further risks. Regularly updating security software and remaining vigilant for phishing indicators can also help protect against such threats.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | jokerstash.cc |
malicious | Sinkholed |
| DNS4EU | jokerstash.cc |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 6 identified
Google Analytics is a free web analytics service that tracks and reports website traffic.
google.com 置信度 100%Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 置信度 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 置信度 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 置信度 100%VirusTotal 分析
网站配置分析
证据与外部报告
PD-20260617-427E3D Recipient: abuse@registrar.eu 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。