tokencs[.]top
“403 Forbidden”
Observação armazenada
Contraste de títulos observado
Resumo das evidências
The domain tokencs.top is classified as a high‑risk generic phishing infrastructure and remains active as of the report date, July 19, 2026. Registration data shows the domain was created through Gname.com Pte. Ltd., and DNS resolution points to the Cloudflare IP address 104.21.6.15 located in Canada. The domain is served behind Cloudflare’s network, using a Lets Encrypt / YE1 certificate, and returns an HTTP 200 response while the page title reports "403 Forbidden," indicating a possible access control response rather than a typical login page. Threat intelligence sources confirm the domain appears in four AlienVault OTX pulses and three public blocklists, and it is actively blocked by security products such as PhishDestroy, MetaMask, and SEAL. VirusTotal scans have flagged the domain by five of ninety‑one vendors, reinforcing the suspicion of malicious use. Nameservers "ollie.ns.cloudflare.com." and "viddy.ns.cloudflare.com." further tie the domain to Cloudflare’s hosting services. While concrete samples of phishing content have not been disclosed, the convergence of high‑risk rating, blocklist presence, vendor detections, and classification as generic phishing suggests the domain is being leveraged for credential‑stealing or similar attacks. Defenders should update perimeter filters to block tokencs.top, monitor DNS queries for the associated IP address, and consider adding the domain to internal blocklists. Continuous observation of any changes to the HTTP response or page content is advised to detect potential shifts in payload delivery.
Data Coverage
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 11/08/2026
Inteligência de Domínios
Detalhes técnicosDNS, nomes TLS e datas
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologias
3 tecnologias identificadas com alta confiança
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of tokencs.top · checked Jul 20, 2026
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo