MALICIOUS — CRITICAL
tokenpockit[.]com[.]cn
PhishDestroy identifies tokenpockit.com.cn as an active OKX impersonation site designed to steal login credentials and personal data from unsuspecting cryptocurrency traders.
- VirusTotal
- 16/91
- Blocklists
- 2 · MetaMask, SEAL
- Доступність
- Контент недоступний · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
tokenpockit.com.cn — Контент недоступний (HTTP 502). Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 16/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLQuery 2 alerts; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 95/100. Реєстратор: Dynadot.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
PhishDestroy identifies tokenpockit.com.cn as an active OKX impersonation site designed to steal login credentials and personal data from unsuspecting cryptocurrency traders. The domain mimics the branding and website layout of the legitimate OKX exchange, tricking users into entering sensitive account information on a counterfeit login page. Once harvested, stolen credentials can be used to drain wallets or sell on dark web markets, leaving victims financially exposed and compromised across other platforms where the same passwords were reused. This domain was flagged via automated monitoring after VirusTotal showed 0 detections out of 95 security engines, highlighting how new impersonation sites evade detection. The site’s registration date of March 25, 2024, and hosting on IP 154.206.139.86 via Dynadot Inc. point to a recent, fast-moving campaign using low-cost registrars and legitimate SSL certificates from Let’s Encrypt to appear trustworthy. The lack of detections underscores the importance of proactive domain monitoring and user verification—especially when links appear in ads, DMs, or search results. If you visited tokenpockit.com.cn, immediately change your OKX password using a different device or browser. Enable two-factor authentication on OKX and revoke any API keys issued from this session. Scan your device with updated antivirus software and monitor your wallet and email for unauthorized transactions. Report the site to OKX abuse@okx.com and file a complaint with your local cybercrime unit or IC3. Never enter login details on any site reached from ads or unsolicited messages—always navigate directly to the official URL (okx.com) and verify the SSL certificate and domain spelling.
Обсяг даних12 recorded checks
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | tokenpockit.com.cn |
malicious | Sinkholed |
| DNS4EU | tokenpockit.com.cn |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 3 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% впевненостіjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of tokenpockit.com.cn · checked May 1, 2026
Докази та зовнішні звітиIndependent lookups and source reports
PD-20260501-22B834 Recipient: bandalgopi709@gmail.com Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.