helpmiueotamask[.]gitbook[.]io
“Metamask Chrome Extension | Extension®e - us | us”
ملخص الأدلة
This domain, helpmiueotamask.gitbook.io, poses a high-risk brand impersonation threat specifically targeting MetaMask users. The site masquerades as the official MetaMask Chrome extension page, using identical branding, logos, and interface elements to deceive visitors into believing they are interacting with legitimate software. The primary objective is likely credential theft or crypto drainer deployment, where attackers gain access to victims' wallet recovery phrases or private keys to siphon cryptocurrency funds. The page title, 'Metamask Chrome Extension | Extension®e - us | us,' further reinforces the deception by closely resembling official MetaMask communication patterns. Analysis indicates this domain was registered on March 14, 2026, through Cloudflare, Inc., and is currently offline. Infrastructure review reveals it resolved to IP address 104.18.40.47, hosted on Cloudflare's network (AS13335). Security vendors flagged this domain in 19 out of 95 scans on VirusTotal, and it appears on three independent security blocklists, including those maintained by crypto-specific threat intelligence sources. The SSL certificate, issued by Google Trust Services (WE1), is consistent with legitimate services but does not mitigate the malicious intent of the content hosted. If you visited helpmiueotamask.gitbook.io or entered any sensitive information, immediately revoke access to any connected browser extensions and transfer cryptocurrency assets to a new, secure wallet. Change all passwords and recovery phrases associated with your MetaMask or other crypto wallets, and enable multi-factor authentication where available. Monitor your wallet activity for unauthorized transactions and report the incident to relevant security teams or crypto exchanges you use. Avoid clicking on links from untrusted sources, and always verify domain authenticity by cross-referencing official project websites or documentation.
Data Coverage
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DigiCert UltraDNS | helpmiueotamask.gitbook.io |
malicious | Sinkholed |
| OpenDNS | helpmiueotamask.gitbook.io |
phishing | Phishing Block |
| Quad9 DNS | helpmiueotamask.gitbook.io |
malicious | Sinkholed |
| Cloudflare DNS | helpmiueotamask.gitbook.io |
malicious | Sinkholed |
| DNS4EU | helpmiueotamask.gitbook.io |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
المخطط الزمني للاكتشاف
-
VirusTotal
0 ← 20
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of helpmiueotamask.gitbook.io · checked Mar 14, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب