imtaken[.]cc
“imToken official website|Ethereum and Bitcoin blockchain wallet”
증거 요약
The domain imtaken.cc was registered on 21 February 2026 and is presently hosted on the IP address 20.247.100.105, which resolves to a Microsoft Corporation network (AS8075) located in Hong Kong. The site’s TLS certificate is identified as R13, indicating a publicly trusted certificate without obvious anomalies. The page title returned from the HTTP response reads "imToken official website|Ethereum and Bitcoin blockchain wallet", a clear reference to the imToken cryptocurrency wallet service, while the threat intelligence tags list the brand target as Arbitrum. This mismatch between the page title and the claimed impersonated brand suggests a deliberate brand‑impersonation tactic aimed at users of the Arbitrum ecosystem.
Open‑source threat feeds corroborate the malicious nature of the domain. AlienVault OTX includes the domain in one pulse, and VirusTotal reports that 20 of 93 security vendors classify the host as malicious, a proportion that exceeds typical background noise for benign sites. The domain appears on a single security blocklist and is explicitly blocked by the PhishDestroy service, reinforcing the assessment that it is being used for a crypto‑related scam. The current HTTP status is reported as offline, meaning the site is not presently serving content, which limits real‑time verification of the exact payload but does not negate the historical evidence of abuse.
Defenders should continue to block imtaken.cc at the DNS and proxy layers, and add the associated IP range to network‑level deny lists. Because the infrastructure resides on a Microsoft‑owned AS, contacting the provider’s abuse team with the full set of indicators (domain name, IP address, registration date, detection counts, and blocklist references) may expedite takedown. Continuous monitoring of passive DNS and certificate transparency logs is advised to detect any re‑registration or reuse of the same IP address by related threats.
Data Coverage
위협 대응 Pipeline
차단 목록 범위
모니터링 중인 외부 피드 10개 · 저장된 스냅샷 2026년 8월 11일
VirusTotal 분석
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.
모든 도메인 확인
저장된 차단 목록, WHOIS, DNS 및 공개 스캔 증거를 사용한 위협 분석
지금 스캔하기피싱 신고
의심스러운 도메인을 당사의 위협 데이터베이스에 신고해 주세요 — 커뮤니티를 보호해 주세요
보고서실시간 위협 정보
최근 피싱 보고서 및 관찰된 가용성 변경 사항
모니터링