tokenimdownload[.]com
“imToken | Ethereum & Bitcoin Wallet”
Збережене спостереження
Зафіксована відмінність заголовків
Зведення доказів
The domain tokenimdownload.com was identified as a cryptocurrency scam site impersonating the imToken brand, as indicated by its page title "imToken | Ethereum & Bitcoin Wallet." The site posed as a legitimate cryptocurrency wallet application to deceive users into downloading malicious software, potentially leading to theft of digital assets or credential compromise.
Technical analysis reveals that VirusTotal flagged the domain with 22 detections out of 95 vendors. It was listed on 1 blocklist and flagged by security vendors ADMINUSLabs, alphaMountain.ai, BitDefender, Cluster25, and CRDF. The domain was registered through Cloudflare, Inc. and created on 2026-03-10. It resolves to IP address 45.202.214.36 located in Hong Kong, hosted by AS40065 CNSERVERS LLC. The SSL certificate is rated E7, and the nameservers are jade.ns.cloudflare.com and ray.ns.cloudflare.com. The GridinSoft trust score is 0 out of 100.
The site is currently offline (status: DOWN/OFFLINE). The DOM risk score is 73, indicating a high risk level. Given the impersonation of a legitimate brand, the high detection rate, and the low trust score, this domain poses a significant threat to cryptocurrency users and should be avoided.
Data Coverage
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | tokenimdownload.com |
malicious | Sinkholed |
| OpenDNS | tokenimdownload.com |
phishing | Phishing Block |
| Hagezi Threat Feed | tokenimdownload.com |
malicious | Sinkholed |
| DigiCert UltraDNS | tokenimdownload.com |
malicious | Sinkholed |
| DNS4EU | tokenimdownload.com |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 10.08.2026
Хронологія виявлення
-
VirusTotal
0 → 14
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології
Виявлено 5 технологій із високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of tokenimdownload.com · checked Mar 15, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога