imtaken.my
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCRisk.com may earn a referral commission when users sign up through this link.
Description of imtaken.my
The website appears to present itself as an official download page for the imToken cryptocurrency wallet, offering Android and iOS app downloads in Chinese. Its page title and meta description promote a digital wallet supporting multiple blockchain networks, and the screenshot shows branding, mobile wallet imagery, and download-focused calls to action.
Based on the visible content, the site is positioned as a cryptocurrency software or wallet-distribution page rather than a general information site. However, the scanned domain name, imtaken.my, does not match the brand name shown on the page, and the site also references related domains such as imtaken.vip and imtokan.im, which may indicate a network of similarly branded pages.
Safety Assessment for imtaken.my
This domain was flagged by 11 out of 91 security engines at the time of the scan, with multiple detections describing it as phishing or malicious. The malware scan also reported one flagged file on the site and identified a referenced external domain as suspicious. In addition, the page appears to imitate the imToken brand while using a different domain name, which may indicate a look-alike setup intended to attract users searching for the wallet's official download page.
Blacklist data was mixed at the time of the scan: major content-malice checks shown here did not report a listing, but the domain's IP address was listed on one mail-reputation blocklist. That DNS-based listing is a weaker signal than the multi-engine phishing detections, but it still adds some caution. The domain is also relatively new, not ranked for notable traffic, and is centered on software downloads, which can increase risk when combined with brand-mimicking presentation.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was served through Cloudflare infrastructure on IP address 188.114.96.0, with hosting geolocated to Toronto, Canada. It used a valid SSL/TLS certificate issued by Google Trust Services, expiring in September 2026. DNSSEC appears to be unsigned, which is not uncommon but does mean DNS responses do not benefit from that additional integrity layer.
From a security perspective, the main concerns are not the certificate or CDN setup, but the detection pattern around phishing, the flagged download-related page, and the suspicious linked domain observed during scanning. Use of a mainstream CDN and valid HTTPS does not by itself verify legitimacy.
Share your experience with this website. Was it safe? Did you encounter any issues?