m.imdowna[.]icu
Forensic brief
PhishDestroy identifies m.imdowna.icu as a high-risk phishing domain pretending to offer downloads for the imToken wallet. This deceptive site aims to trick users into exposing sensitive information. The phishing tactic involves mimicking legitimate imToken wallet download pages to lure victims into entering credentials or downloading malicious software. The domain is active and flagged by multiple security vendors, indicating ongoing risk. If you have visited m.imdowna.icu, avoid entering any personal data and run a full security scan on your device. Change any passwords that might have been compromised and monitor your accounts for suspicious activity.
Threat response pipeline
VirusTotal
Forensic Evidence CollectionEvidence capture
Domain Intelligence
Technical details
Public blocklist status
VirusTotal consensus
Aggregated detection across 12 security vendors.
Evidence & external reports
Were you affected by this site?
Were You Affected?
Report to your local authorities
Email template — registrar abuse
abuse@
Case: PD-
Embed this report
About this report
About this report: m.imdowna.icu
This domain security report is maintained by PhishDestroy's automated threat-intelligence pipeline. Our system continuously monitors this domain across 12 security vendors on VirusTotal and 1 public blocklists.
The site displays a page titled “im钱包下载-imToken钱包-imToken安装下载地址”.
m.imdowna.icu has been flagged by 12 security vendors as of May 17, 2026.
If you believe this listing is inaccurate, you can submit an appeal. For more information about our methodology, visit our FAQ page.