phenomtoken[.]top
“Phenom Poker - $PHNM Token Airdrop”
Зведення доказів
PhishDestroy identifies phenomtoken.top as an active brand-impersonation scam targeting OKX users. This malicious site claims to offer a cryptocurrency airdrop and is designed to steal personal data or crypto funds by tricking victims into entering login credentials or wallet information under the guise of a promotional giveaway.
This domain was flagged by PhishDestroy after investigations revealed multiple red flags, including its very recent creation on March 30, 2026 — just days prior to this assessment — and zero detections out of 95 security engines on VirusTotal at the time of analysis. The site is registered via NICENIC INTERNATIONAL GROUP CO., LIMITED and resolves to IP address 172.67.150.188, using a valid Let’s Encrypt SSL certificate to appear legitimate. Unlike legitimate OKX domains, this deceptive site uses misspelled branding and promises unrealistic rewards to lure victims.
If you visited phenomtoken.top, cease any interaction immediately. Do not enter any login credentials, wallet addresses, private keys, or personal information. Clear your browser cache, run a full malware scan on your device, and monitor your financial and crypto accounts for suspicious transactions. Report the domain to your antivirus provider and to OKX’s official security team. Use only official OKX channels (okx.com) for any real promotions or support.
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-20260331-81B0F3- Заголовок збереженої сторінки
- Phenom Poker - $PHNM Token Airdrop
- PDF-файл
- PDF із доказами
Повний текст доказів
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 10.08.2026
8 зовнішніх джерел під наглядом Збігів немає
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of phenomtoken.top · checked Mar 31, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога