phenomtoken[.]top
فحص التصيد والأمان للنطاق phenomtoken.top
“Phenom Poker - $PHNM Token Airdrop”
phenomtoken.top — المحتوى غير متوفر (HTTP 502). انتحال العلامة التجارية: Base; نوع الاحتيال: Fake Airdrop. ملخص الأدلة: VirusTotal 2/94 (Fortinet, SOCRadar); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. مسجّل النطاق: 耐思尼克国际集团有限公司.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy identifies phenomtoken.top as an active brand-impersonation scam targeting OKX users. This malicious site claims to offer a cryptocurrency airdrop and is designed to steal personal data or crypto funds by tricking victims into entering login credentials or wallet information under the guise of a promotional giveaway.
This domain was flagged by PhishDestroy after investigations revealed multiple red flags, including its very recent creation on March 30, 2026 — just days prior to this assessment — and zero detections out of 95 security engines on VirusTotal at the time of analysis. The site is registered via NICENIC INTERNATIONAL GROUP CO., LIMITED and resolves to IP address 172.67.150.188, using a valid Let’s Encrypt SSL certificate to appear legitimate. Unlike legitimate OKX domains, this deceptive site uses misspelled branding and promises unrealistic rewards to lure victims.
If you visited phenomtoken.top, cease any interaction immediately. Do not enter any login credentials, wallet addresses, private keys, or personal information. Clear your browser cache, run a full malware scan on your device, and monitor your financial and crypto accounts for suspicious transactions. Report the domain to your antivirus provider and to OKX’s official security team. Use only official OKX channels (okx.com) for any real promotions or support.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات · 4 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of phenomtoken.top · checked Mar 31, 2026
الأدلة والتقارير الخارجية
PD-20260331-81B0F3 Recipient: abuse@nicenic.net, abuse@nic.top, compliance@icann.org هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب