okqianbaoappxiazaianzhuanggw.com.cn
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCRisk.com may earn a referral commission when users sign up through this link.
Description of okqianbaoappxiazaianzhuanggw.com.cn
This website appears to present itself as a Chinese-language digital wallet and asset-management platform branded as “OK钱包” (“OK Wallet”). Based on the page title, meta description, and visible homepage sections, it claims to offer payment, transfers, multi-currency asset storage, and personal financial management features, with calls to register, log in, and download an app.
The domain name is unusually long and descriptive, roughly translating to an “OK wallet app download/install official website” pattern. That naming style, combined with the finance-oriented branding and app-download messaging, suggests the site may be targeting users looking for a wallet application rather than representing a broadly established financial institution. No clear operator identity is visible in the provided scan data beyond generic branding and a mainland China ICP filing link.
Safety Assessment for okqianbaoappxiazaianzhuanggw.com.cn
Multiple scan signals indicate elevated risk at the time of this scan. The domain was flagged by 14 out of 91 security engines, with many of those detections classifying it as phishing or malicious. In addition, a malware scan reported one flagged script file (nb.js) and assigned a malicious threat level, which may indicate suspicious page behavior or embedded code.
The site’s presentation also raises concern in context: it promotes a financial wallet/app download experience, uses a long keyword-stuffed domain, and does not appear to have an established popularity ranking. While several blacklist databases were clean at the time of this scan, blacklist status alone does not rule out newer or short-lived phishing activity, especially for finance-themed pages.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was reachable over HTTPS with a valid Let's Encrypt certificate that, at the time of the scan, was set to expire on 2026-07-22. It appears to be served by nginx from IP address 154.194.137.77, hosted by Starbow Ltd in Chai Wan, Hong Kong. DNSSEC was not enabled, and the domain used share-dns.com / share-dns.net nameservers.
From a security perspective, the main technical concern is not the TLS setup but the detection pattern around the hosted content: one JavaScript file was flagged during malware scanning, and the domain received multi-engine phishing/malicious detections. The domain age and creation details were not available in the provided data, which limits reputation assessment.
Share your experience with this website. Was it safe? Did you encounter any issues?