# web3.0tokenize.xyz — SUSPICIOUS > web3.0tokenize.xyz is a brand impersonation site mimicking OKX, flagged by 0 of 95 VirusTotal vendors. ## Summary PhishDestroy identifies web3.0tokenize.xyz as a brand impersonation domain targeting OKX users, currently active and under investigation. The domain leverages the recognizable OKX brand to deceive visitors into disclosing credentials or transferring cryptocurrency assets under false pretenses. Initial analysis confirms the threat type as brand impersonation with a risk level classified as under_investigation. This domain was flagged by 0 of 95 VirusTotal vendors as of the latest scan, indicating it has not yet been widely detected by security solutions. It is registered through NameSilo, LLC and resolves to IP address 74.211.109.122. The domain was created on September 27, 2025, and operates under a Let's Encrypt SSL certificate, which may lend an air of legitimacy to unsuspecting users. Despite its recent creation, the domain remains unblocked by major threat intelligence platforms, posing a potential risk for early-stage phishing campaigns targeting cryptocurrency users. As of current findings, web3.0tokenize.xyz remains active and poses a credible threat to individuals interacting with OKX or Web3-related services. Users are advised to avoid visiting or engaging with the domain until further investigation concludes. Security teams should monitor this domain for emerging detections and consider blocking the associated IP (74.211.109.122) and registrar (NameSilo, LLC) at the network level. Additionally, users should verify URLs carefully, enable multi-factor authentication (MFA) on OKX accounts, and report suspicious activity to prevent credential theft or unauthorized fund transfers. Further updates will be provided as the investigation progresses. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) - Target brand: OKX ## Domain Intelligence - Registered: 2025-09-27 08:38:57 - Registrar: NameSilo, LLC - IP: 74.211.109.122 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/domains/web3.0tokenize.xyz - PhishDestroy: https://phishdestroy.io/domain/web3.0tokenize.xyz/ - LLM endpoint: https://phishdestroy.io/domain/web3.0tokenize.xyz/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/web3.0tokenize.xyz/ Last updated: 2026-04-03