MALICIOUS — CRITICAL
tokenpooket.co Safety Check — Generic Phishing Detected
tokenpooket[.]
Analysis indicates that tokenpooket.co is presently active and serves a page titled “404 Not Found” while returning HTTP status 200.
- VirusTotal
- 16/91
- Blocklists
- 2 · MetaMask, SEAL
- Disponibilité
- Dernier actif connu · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
tokenpooket.co — Dernier actif connu (HTTP 200). Résumé des preuves: VirusTotal 16/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 100/100.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
Evidence Analysis
Analysis indicates that tokenpooket.co is presently active and serves a page titled “404 Not Found” while returning HTTP status 200. The domain resolves to IP 104.21.27.242, which is hosted by Cloudflare, Inc. in Canada and presents a Let’s Encrypt certificate identified as YE2. The infrastructure has been flagged by multiple defensive products, including PhishDestroy, MetaMask, and SEAL, and appears on three external blocklists. AlienVault OTX references the domain in a single threat‑intel pulse, and VirusTotal records 16 of 91 scanners labeling the domain as malicious. These indicators collectively suggest the domain is being used in a generic phishing operation. No additional content details have been disclosed, and the exact payload or target brand remains unknown. Defenders should block the domain at network perimeter, monitor DNS queries for the host, and consider adding the associated IP address to deny lists. Ongoing observation is advised to capture any changes in content or hosting.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Couverture des données12 recorded checks
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
Technologies · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confiance à 100 %Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Confiance à 100 %HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confiance à 100 %Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of tokenpooket.co · checked Jul 20, 2026
Données factuelles et rapports externesIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.