imtoken will never ask for your seed phrase, private key or verification code. Always review the address, network and request details before transferring, signing or approving.

imtoken Knowledge Center

Phishing & Scams

Recognize fake support, fake airdrops, lookalike domains, malicious signatures and clipboard risks.

Safety principle

Never share your seed phrase, private key or verification code. Review the address, network and request details before you sign, approve or transfer.

Lookalike domains and search ads

How to evaluate it

Lookalike domains and search ads is a distinct part of understanding Phishing & Scams. Separate interface labels from on-chain facts: an address identifies an account, the selected network determines where the asset and transaction exist, and a signature or approval can change permissions or trigger execution. The goal is not to memorize button positions. A safer habit is to identify the request, the network, the permission being granted and the result you expect before you confirm anything.

Lookalike domains and search ads is a distinct part of understanding Phishing & Scams. Separate interface labels from on-chain facts: an address identifies an account, the selected network determines where the asset and transaction exist, and a signature or approval can change permissions or trigger execution. Fees, confirmation speed and supported features vary across networks. A wallet interface is only one view of the activity; the corresponding blockchain record remains the stronger reference for transaction status.

  • Confirm the object and network related to lookalike domains and search ads
  • Never share a seed phrase, private key or verification code
  • Do not approve a request you cannot explain

Fake support and remote access

Operational and risk points

Fake support and remote access is a distinct part of understanding Phishing & Scams. Separate interface labels from on-chain facts: an address identifies an account, the selected network determines where the asset and transaction exist, and a signature or approval can change permissions or trigger execution. Fees, confirmation speed and supported features vary across networks. A wallet interface is only one view of the activity; the corresponding blockchain record remains the stronger reference for transaction status.

Fake support and remote access is a distinct part of understanding Phishing & Scams. Separate interface labels from on-chain facts: an address identifies an account, the selected network determines where the asset and transaction exist, and a signature or approval can change permissions or trigger execution. Use a least-privilege mindset. Never share a seed phrase, private key or verification code, and do not lower your review standard because a request claims to be support, an airdrop, an upgrade or an urgent notice.

  • Confirm the object and network related to fake support and remote access
  • Never share a seed phrase, private key or verification code
  • Do not approve a request you cannot explain

Fake airdrops and malicious signatures

How to evaluate it

Fake airdrops and malicious signatures is a distinct part of understanding Phishing & Scams. Separate interface labels from on-chain facts: an address identifies an account, the selected network determines where the asset and transaction exist, and a signature or approval can change permissions or trigger execution. Use a least-privilege mindset. Never share a seed phrase, private key or verification code, and do not lower your review standard because a request claims to be support, an airdrop, an upgrade or an urgent notice.

Fake airdrops and malicious signatures is a distinct part of understanding Phishing & Scams. Separate interface labels from on-chain facts: an address identifies an account, the selected network determines where the asset and transaction exist, and a signature or approval can change permissions or trigger execution. A repeatable sequence helps: verify the source, check the address and network, review the amount or permission, then keep the transaction hash and verify confirmation on-chain. Stop when details conflict.

  • Confirm the object and network related to fake airdrops and malicious signatures
  • Never share a seed phrase, private key or verification code
  • Do not approve a request you cannot explain

Clipboard address replacement

Operational and risk points

Clipboard address replacement is a distinct part of understanding Phishing & Scams. Separate interface labels from on-chain facts: an address identifies an account, the selected network determines where the asset and transaction exist, and a signature or approval can change permissions or trigger execution. A repeatable sequence helps: verify the source, check the address and network, review the amount or permission, then keep the transaction hash and verify confirmation on-chain. Stop when details conflict.

Clipboard address replacement is a distinct part of understanding Phishing & Scams. Separate interface labels from on-chain facts: an address identifies an account, the selected network determines where the asset and transaction exist, and a signature or approval can change permissions or trigger execution. The goal is not to memorize button positions. A safer habit is to identify the request, the network, the permission being granted and the result you expect before you confirm anything.

  • Confirm the object and network related to clipboard address replacement
  • Never share a seed phrase, private key or verification code
  • Do not approve a request you cannot explain

Related learning