# tokenpockets.vip — MALICIOUS > tokenpockets.vip is a crypto drainer impersonating OKX – flagged by 10/95 VirusTotal scanners. Verify this domain on PhishDestroy before using. ## Summary This domain poses as a fake OKX wallet (tokenpockets.vip) to steal crypto via a crypto drainer. PhishDestroy flags it after 10 of 95 VirusTotal engines detected abuse, with registration via Cloudflare on Dec 27, 2023 resolving to 188.114.97.3. Exact evidence: VirusTotal 10/95 detection rate, Cloudflare-registered Dec 27 2023, IP 188.114.97.3. Avoid entering credentials here. If visited, disconnect wallet immediately, revoke any permissions, and scan devices for malware. Report the incident to PhishDestroy for further blocking. ## Threat Details - Verdict: MALICIOUS - Site status: unknown (HTTP ?) - Target brand: OKX ## Domain Intelligence - Registered: 2025-12-27 11:04:36 - Registrar: Cloudflare, Inc. - IP: 188.114.97.3 ## Detection Status - VirusTotal: 10 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/f05403ae-9700-47ba-91fa-663b76b72923 - PhishDestroy: https://phishdestroy.io/domain/tokenpockets.vip/ - LLM endpoint: https://phishdestroy.io/domain/tokenpockets.vip/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/tokenpockets.vip/ Last updated: 2026-03-21