ylk[.]wdu-okgx[.]com[.]cn
“欧易OKX官网注册_全球领先的数字资产交易平台_OKX欧易全球主流交易平台【官方网站】”
ylk.wdu-okgx.com.cn — 未验证. 品牌冒充:OKX; 诈骗类型:Impersonation. 证据摘要: VirusTotal 7/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet, Google Safe Browsing, Gridinsoft); Google Safe Browsing flagged; Spamhaus DBL_SPAM; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
ylk.wdu-okgx.com.cn is a subdomain of wdu-okgx.com.cn. PhishDestroy first observed the hostname on Aug 9, 2026. Stored content metadata identifies OKX as the apparent target. The captured page title is “欧易OKX官网注册_全球领先的数字资产交易平台_OKX欧易全球主流交易平台【官方网站】”. Stored page analysis classifies the content as impersonation. Current evidence score: 95/100 (critical).
Positive findings are stored from 5 sources: VirusTotal, MetaMask, SEAL, Google Safe Browsing, and Spamhaus DBL. VirusTotal recorded 7 detections among 91 engines: alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet, Google Safe Browsing, Gridinsoft, LevelBlue, SOCRadar on Aug 21, 2026 at 07:21 UTC. MetaMask and SEAL listed the hostname in the separate external-blocklist snapshot on Aug 23, 2026 at 22:20 UTC. Google Safe Browsing flagged the domain: Social Engineering on Aug 21, 2026 at 07:22 UTC. Spamhaus DBL: DBL_SPAM on Aug 9, 2026 at 10:30 UTC. Non-positive and contextual checks: URLScan completed without a malicious verdict (score 0) on Aug 9, 2026 at 10:49 UTC.
The collector marked the hostname reachable on Aug 23, 2026 at 22:16 UTC, but did not retain the HTTP response code. At collection time, the hostname resolved to 162.4.136.242 (AS136250 ZhongShanShi QiYi HuDong WangLuoKeJi Ltd). The recorded endpoint location is Hong Kong, HK. The stored server header is nginx. The evidence archive retains 2 visual captures from PhishDestroy and Cloudflare Radar. TLS metadata lists Let's Encrypt as the certificate issuer with validity through Oct 14, 2026; checked Aug 11, 2026 at 19:02 UTC.
The content indicators and 5 positive source findings support the current OKX-themed impersonation classification.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。