turbotoken-io[.]pages[.]dev
“Turbo Token - A Memecoin Made by AI for the People | Turbo Token”
turbotoken-io.pages.dev — 未验证. 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 14/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); Google Safe Browsing flagged; 2 external blocklist matches (ScamSniffer, Enkrypt); PhishDestroy score 100/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain turbotoken-io.pages.dev is currently flagged as an active brand impersonation threat targeting OKX, a major cryptocurrency exchange platform. This domain mimics legitimate OKX services to deceive users into engaging with fraudulent crypto-related content, potentially leading to financial loss or unauthorized access to sensitive information. Analysis indicates this is not a generic phishing attempt but a targeted impersonation scheme designed to exploit trust in the OKX brand. Infrastructure analysis reveals the domain was registered through Cloudflare, Inc. on September 06, 2024, and resolves to the IP address 188.114.97.3, located in Canada under Cloudflare’s network. The domain appears on three security blocklists and is flagged by 11 of 95 VirusTotal security vendors as malicious. Google Safe Browsing has explicitly classified it as a phishing site. The page title, 'Turbo Token - A Memecoin Made by AI for the People | Turbo Token,' further suggests an attempt to lure users with crypto-themed content, a common tactic in brand impersonation schemes targeting digital asset holders. As of the latest assessment, turbotoken-io.pages.dev remains active and poses a high risk to users. Organizations and individuals are advised to block this domain at the network level and update endpoint protection rules to prevent access. Users should be educated on recognizing brand impersonation tactics, particularly in the cryptocurrency space, and verify domain authenticity before interacting with any crypto-related services. Monitoring for additional domains registered under the same infrastructure or following similar naming patterns is recommended to preempt further threats.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
域名情报
技术细节DNS、SSL SAN、时间戳
所用技术 · 5 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
证据与外部报告
“@leest Telegram”
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。