DANGEROUS

Crypto scam / wallet-drainer

2 of 92 antivirus engines flag this page. Signals match fake investment platforms and wallet drainers. Never connect a wallet, paste a seed phrase, or deposit crypto here.

Security Review

Is okxweb.app legit or a scam?

Our verdict:Dangerous· 1/100

Fake OKX Wallet clone that loads a crypto wallet-connect page on a 140-day-old domain with phishing flags and IP abuse reports.

okxweb.appScanned 8d ago
0
Trust score
DANGEROUS
Heuristics 0·MT 22
Category tags
cryptowallet#Phishing#Clone Site#Crypto Fraud85% MT confidence

These checks passed — but they don't clear the site. A clean antivirus result, valid SSL, and a calm server only mean it isn't hosting malware; they say nothing about whether the business is real. This verdict is based on the site's conduct and content, not a malware detection.

View density

Analysis Summary

Threat Intelligence
0/92
Engines flagged this URL
Domain Age
4 months old
Registered Jan 8, 2026
MT Intelligence
Dangerous
High likelihood · 85% confidence

MT Intelligence

Advanced threat intelligence
MT Security Analyst
High scam likelihoodengineMT · Guardiantrust22/100
MT AgentLive web researchVisual inspectionNetwork correlation
0%
Confidence
The page presents itself as an OKX Wallet landing site offering wallet import and multi-chain trading, but it exactly mirrors the official web3.okx.com content. Fortinet flagged it as phishing while two other engines marked it malicious or spam, and the hosting IP carries 10 abuse reports. The domain is only 140 days old with no business registration or contact details, which is inconsistent with a legitimate crypto service. Our fingerprinting confirms it as a clone using the contactless-crypto pattern. These combined signals override the single positive review and indicate clear impersonation risk.
Full dossier
Analysis complete

Page Content

The site displays the exact OKX Wallet title and description, with buttons for importing or creating a wallet and links to external domains like okxwallets.com. No contact information, addresses, or licenses appear anywhere on the page.

Infrastructure

Valid SSL certificate from Let's Encrypt, hosted on IP 163.61.188.2 with a 46/100 abuse score and multiple prior reports. No redirects or homoglyph tricks detected.

Domain History

Registered 140 days ago through Sav.com with privacy protection disabled. Not present in global traffic rankings.

Web Reputation

Two antivirus engines flagged the page as malicious or phishing; browser blocklists remain clean. One external scan labeled it phishing while another gave a low-risk assessment.

Risk Factors
5
  • Exact clone of the official OKX Wallet site with identical title and wallet import prompts
  • Fortinet and ADMINUSLabs both flagged the page as phishing or malicious
  • Hosting IP shows 46/100 abuse score with 10 prior reports
  • Domain only 140 days old and lacks any business registration or contact details
  • Zero social links, emails, or phone numbers on a crypto service page
Positive Signals
3
  • Valid SSL certificate still has 74 days before expiry
  • No malware or redirect chains detected in the scan
  • Browser blocklist feeds returned clean
AI Recommendation
Do not connect any wallet or share seed phrases. Use only the official OKX site at web3.okx.com and verify the URL before proceeding.
Scam network detected
1 linked domain correlated

Evidence confirms this site is a clone of web3.okx.com using the contactless-crypto pattern. Legitimate operators publish licenses and addresses; zero contact info here is a red flag.

web3.okx.com
Next-gen fraud intelligence
Evidence-backedCross-checked

Website Preview

Screenshot of okxweb.app
LIVE RENDER
okxweb.app

Automated page render — captured in a safe sandbox. What an ordinary visitor would see when loading the site.

Visual Screenshot Analysis

We capture a fresh screenshot of the live page and ask a vision model to look for scam visual patterns — fake trust badges, countdown timers, overlay pop-ups, and visual clones of legitimate brands.

25
/ 100
Moderate visual risk

Visual red flags detected in the screenshot

Clean, fully rendered landing page with no visible scam indicators such as fake badges, urgency timers, overlays, or poor design.

Visual risk25/100

Web Research Findings

Our live research agent queries scam-report databases, consumer-review sites, news coverage, and general web search for okxweb.app, then cross-checks business-registration records and look-alike domain patterns. Everything below is pulled from what it actually found.

Domain age
4 months
Registered Jan 2026
Business registration
No public record found
Could not match the site to a registered company — common for small sites.
Clone check
Clones web3.okx.com
The page impersonates a well-known brand's site.
Typosquat check
No look-alike match
The domain doesn't resemble any well-known brand's spelling.
Web mentions
1 scam report · 1 positive
Key findings
7 headline facts from open-web research
  • Domain okxweb.app (and variant okx-web.app) registered ~140 days ago per provided data.
  • Page title/description identical to official OKX Wallet at web3.okx.com.
  • Flagged as Phishing by pcrisk scanner with 16/92 engines and 0/100 trust score (May 2026 scan).
  • YouTube video titled 'Okxweb.app Scam or Legit Wallet Drain Warning' exists.
  • Scamadviser review concludes 'legit' with few scam indicators.
  • No specific user complaints or Reddit threads found mentioning okxweb.app directly.
  • Multiple similar fake OKX domains noted in crypto scam reports (e.g., okxclaim.web.app).
Scam reports (1)
Direct quotes from public scam databases, forums, and news.
  • pcrisk.com scanneropen

    "Category: **Phishing** ... trust score 0/100, 16/92 engines flagged ... The domain okx-web.app appears to present itself as a cryptocurrency wallet and Web3 access page."

Positive reviews (1)
Quotes indicating the site is legitimate.
  • scamadviser.comopen

    "In summary, we think okx-web.app is legit as we found few indicators which might point to a scam."

Impersonation / typosquat
Clone of web3.okx.com

Exact match to OKX Wallet page title/description; offers wallet connect/import on multi-chain crypto services.

Research summary
Narrative write-up from our AI analyst, grounded on the facts above

Our research located one report from a security scanner that flagged okxweb.app as phishing with a zero trust score. A second review site assessed it as low-risk with few indicators of fraud. No user complaints, Reddit threads, or additional scam mentions were found for this exact domain, though similar fake OKX wallet domains appear in broader crypto scam discussions.

Scam Network Intelligence

Cross-site correlation

This site shares signals with a broader cluster

High correlation

Many scams don't operate alone. We correlate third-party scripts, hosting infrastructure, brand-impersonation signals, and the AI evidence package to detect when a site is part of a broader scam network.

Suspicion score
0/100
ClearLowModerateHighCritical
Evidence (2)
  • Evidence confirms this site is a clone of web3.okx.com.
  • Zero contact info on a crypto/gambling page — legitimate operators publish a licence and address.
Linked signals (2)
Clone of web3.okx.comPattern · Contactless Crypto

Antivirus Engines

Detection matrix · live
3 engines flagged this URL

We cross-check every URL against our antivirus network of 92 malware and blacklist engines. Each detection is listed below by engine name — even a single hit is a meaningful signal.

2Malicious1Suspicious56Harmless92Engines
0
of 92
ADMINUSLabs
Malicious· malicious
Fortinet
Malicious· phishing
alphaMountain.ai
Suspicious· spam

3 antivirus engines flagged this URL. Even a single detection is a meaningful signal — treat this site with extra caution and avoid entering credentials, payment info, or downloading any files.

Security Scans

Blacklist Check
Not flagged on major threat lists

Checked against the major public blocklists used by browsers and security tools — no hits.

Contact Verification

We fetched the page and looked for real-world contact details. Legitimate businesses almost always publish an email on their own domain, a phone number, and a postal address. Scam shops usually don't.

What We Found
No clear contact details on the page
Emails on site's domainNone
Phone numbersNone
Postal addressNot listed
Linked social profiles0
Signal Summary
Several contact red flags
  • No contact email found anywhere on the page.
  • No phone number listed on the page.
  • No postal address visible on the page.

Domain & Encryption

Domain History
Age4 months old
RegistrarSav.com, LLC
RegisteredJan 8, 2026
ExpiresJan 8, 2027
Owner privacyVisible
Encryption Certificate
StatusValid
ProtocolTLSv1.3
IssuerLet's Encrypt · R13
ExpiresAug 11, 2026 (74d)
Self-signedNo
Hosting & Technology
HostingLeads Globe
Server locationUS
Web serverLiteSpeed

Server Reputation

Abuse Intelligence
Confidence score46%
Reports on file10
ISPLeads Globe
Usage typeData Center/Web Hosting/Transit

Scam-Type Likelihood

3 scam-type patterns detected
Scam-Type Likelihood

0 of 13 categories showed signals

We check every URL against 13 distinct scam categories so the verdict tells you not just how risky the page is, but what kind of risk it carries. Each meter pulls from page signals, web reports, our AI analyst, vision, and the scam-network cluster — not from raw AV labels.

Top match: Crypto Fraud
Crypto Fraud
Moderate likelihood
0/100
  • AI analyst tagged this as crypto fraud / wallet-drainer.
  • AI analyst categorised the site as crypto-themed.
Brand Impersonation
Moderate likelihood
0/100
  • AI analyst tagged this as a brand / clone-site impersonation.
  • Clustered with known brand-impersonation infrastructure.
Phishing
Low-level signals
0/100
  • AI analyst tagged this as phishing.

Crypto scam / wallet-drainer indicators

The page shows patterns common to crypto-investment scams, fake airdrops, and wallet drainers.

  • Do not interact with okxweb.app

    Do not enter credentials, deposit money, download files, or install browser extensions from this site.

  • Never paste your seed phrase anywhere

    Legitimate wallets, exchanges and support staff will never ask for your 12/24-word recovery phrase. Typing it into any website — even one that looks real — gives attackers full access to your funds.

  • If you already connected a wallet

    Revoke token approvals immediately using revoke.cash or Etherscan's Token Approvals tool. Move remaining funds to a fresh wallet (new seed phrase). Assume the original wallet is compromised.

  • Report the wallet and URL

    File a report at IC3 (FBI Internet Crime Complaint Center) or your country's cybercrime portal. Recovery is unlikely, but reports help law enforcement map the network.

    Open

Reputation Sources

How this domain rates across independent threat-intelligence and blocklist providers.

Google Safe Browsing
Not listedCheck ↗
VirusTotal
ListedCheck ↗
AbuseIPDB
ListedCheck ↗

Referenced Domains

Outbound domains this page links to or loads resources from. Each links to its own security scan.

Safety FAQ

Common questions about this site, answered from the scan data on this page. These are auto-generated — not hand-written — so they always match the underlying report.

  • Our automated security review flags okxweb.app as dangerous. Multiple threat indicators were detected — treat the site as a scam until proven otherwise.

Final Verdict

0
Trust / 100
Final Verdict·okxweb.app
DANGEROUS

This site impersonates the official OKX Wallet with identical page text and wallet-connect buttons. Our analysis flags it as malicious due to phishing detections, an abusive hosting IP, and confirmed cloning of the real OKX domain. Avoid connecting any wallet or entering credentials here.

Do not connect any wallet or share seed phrases. Use only the official OKX site at web3.okx.com and verify the URL before proceeding.

AV engines
92
MT passes
2
Net signals
2
Scan another URL
Security review completemalwaretips.com/url-scan
Recently scanned

Other Dangerous reports

Browse all reports
Community review

User reviews & comments(0)

Share your experience — "Lost $200 on a fake checkout" is more useful than "Scam". Your review helps others avoid traps.

Loading…
Loading comments…
This report is generated automatically by combining threat intelligence, domain signals, and an AI security analyst. It is informational, not legal advice. Always use your own judgement before sharing personal information or money online.