lmtoken[.]uk
“imToken official website|Ethereum and Bitcoin blockchain wallet”
证据摘要
This domain is flagged for elevated risk due to brand impersonation targeting cryptocurrency wallet users. Analysis indicates lmtoken.uk mimics Blockchain.com, a legitimate platform for Ethereum and Bitcoin blockchain wallets, to deceive users into disclosing sensitive credentials or transferring digital assets to attacker-controlled addresses. Infrastructure analysis reveals the domain was registered on December 27, 2025, through Cloudflare, Inc., and resolves to IP address 20.239.166.174, hosted on AS8075 (Microsoft Corporation) in Hong Kong. VirusTotal reports 17 out of 95 security vendors flagging the domain as malicious. The domain appears on one security blocklist and lacks an SSL certificate, further reducing its legitimacy. The page title, 'imToken official website|Ethereum and Bitcoin blockchain wallet,' directly impersonates a trusted wallet provider, increasing the likelihood of successful social engineering attacks. Mitigation steps for this threat type include immediate blocking of the domain and its associated IP (20.239.166.174) at the network perimeter. Organizations should update endpoint protection rules to detect and prevent access to lmtoken.uk and similar impersonation domains. Users should be educated on verifying domain authenticity before entering credentials or conducting transactions, particularly for cryptocurrency services. Monitoring for additional domains registered through the same registrar (Cloudflare, Inc.) or resolving to the same IP range may help identify related threats.
已提交证据快照
- 已发送
- 台账记录
- 1
- 案件 ID
PD-20260104-CE2F90- 已捕获页面标题
- imToken official website|Ethereum and Bitcoin blockchain wallet
- PDF 文件
- PDF 证据
法律依据
完整证据文本
This domain violates multiple sections of your Acceptable Use Policy (AUP) and Terms of Service (TOS):
🔴 AUP VIOLATIONS:
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Malicious Use: Abuse of your infrastructure for criminal purposes
⚖ APPLICABLE LAWS (Unknown):
• International Anti-Cybercrime Regulations
• Budapest Convention on Cybercrime
• Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
📋 REGULATORY CONTEXT (Unknown):
International cybercrime frameworks require documented abuse response. Systematic inaction may affect business relationships with payment processors and security vendors.
IMMEDIATE ACTION REQUIRED: This evidence-backed report demonstrates clear violations requiring suspension per your own policies.
Continued hosting exposes your organization to regulatory scrutiny, reputational damage, and potential legal liability.
Note: This domain has been publicly documented in threat intelligence feeds.
Your response (or lack thereof) is being monitored by security researchers and may affect trust scores used by
payment processors, CDN providers, and enterprise security vendors.
Data Coverage
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | lmtoken.uk |
malicious | Sinkholed |
| OpenDNS | lmtoken.uk |
phishing | Phishing Block |
| DigiCert UltraDNS | lmtoken.uk |
malicious | Sinkholed |
| DNS4EU | lmtoken.uk |
malicious | Sinkholed |
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
检测时间线
-
Cloudflare Radar
已存储 Cloudflare Radar 扫描 · 打开扫描
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控