eng-metmsskio-us-web[.]pages[.]dev
“MetaMask Login - Getting Started with MetaMask”
eng-metmsskio-us-web.pages.dev — المحتوى غير متوفر. انتحال العلامة التجارية: MetaMask; نوع الاحتيال: Seed Phrase Theft. ملخص الأدلة: VirusTotal 11/95 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, CyRadar); Google Safe Browsing flagged; PhishDestroy score 83/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy has identified the domain eng-metmsskio-us-web.pages.dev as a high-risk brand impersonation threat specifically targeting MetaMask users. This domain is currently offline, but during its active period it posed a significant danger to anyone seeking legitimate MetaMask services. The site was designed to steal login credentials and sensitive information from unsuspecting victims.
Technical analysis reveals that this domain was registered through Cloudflare, Inc. on October 30, 2025, and resolves to IP address 172.66.45.16. It was flagged by 11 out of 95 VirusTotal vendors as malicious, and appears on one security blocklist. Google Safe Browsing also flagged it for phishing activity. The SSL certificate was issued by Google Trust Services under WE1, giving the fraudulent site a false sense of security. The page title was "MetaMask Login - Getting Started with MetaMask," which directly impersonates the legitimate MetaMask interface.
Given that the domain is now offline, the immediate threat is contained. However, users should remain vigilant against similar phishing attempts. PhishDestroy recommends that anyone who may have visited this domain or entered credentials should immediately change their MetaMask passwords and enable two-factor authentication. Always verify URLs before entering sensitive information, and use official MetaMask channels for support and login. For ongoing protection, consider using a reputable anti-phishing extension and reporting suspicious domains to relevant authorities.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org ثقة 100٪Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
الأدلة المؤرشفة
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of eng-metmsskio-us-web.pages.dev · checked Mar 24, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب