imtokentio[.]com
“ERROR 404 - Not Found!”
साक्ष्य सारांश
PhishDestroy identifies imtokentio.com as an active brand impersonation site targeting OKX cryptocurrency exchange users. This domain was flagged within 48 hours of creation on September 2, 2025, and is hosted on a server with IP 156.238.250.124. The site leverages a Let's Encrypt SSL certificate to appear legitimate, despite being registered through Gname.com Pte. Ltd., a registrar often abused by malicious actors for short-lived fraudulent campaigns. This domain poses a high-risk threat through direct OKX impersonation, aiming to deceive users into entering login credentials or financial details into a counterfeit trading interface. VirusTotal currently shows 0 detections out of 95 engines, indicating this threat has not yet been widely recognized by automated scanners. The domain's age (under 48 hours) and low detection rate make it particularly dangerous, as users may unknowingly engage with the fake site before security systems catch up. The registration through Gname.com Pte. Ltd. further correlates with historical patterns of disposable fraud domains. Users who visited imtokentio.com should immediately cease any interaction with the site and disconnect from untrusted networks. Review all recent transactions for unauthorized activity, especially if credentials were entered. Systems administrators should block the IP address 156.238.250.124 at the firewall and add imtokentio.com to network blocklists. Report the domain to your cybersecurity team and OKX’s official fraud reporting channel. Enable multi-factor authentication on all cryptocurrency exchange accounts and use password managers to prevent credential theft. Monitor credit reports for signs of identity compromise.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | www.imtokentio.com |
malicious | Sinkholed |
| DNS4EU | www.imtokentio.com |
malicious | Sinkholed |
| Hagezi Threat Feed | www.imtokentio.com |
malicious | Sinkholed |
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 12/08/2026
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।