metaamask-login-en[.]pages[.]dev
“Suspected phishing site | Cloudflare”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
The domain metaamask-login-en.pages.dev was registered on 21 February 2026 through Cloudflare, Inc. and is hosted on Cloudflare’s network (AS13335) with the IPv6 address 2606:4700:310c::ac42:2d0a located in the United States. DNS resolution shows the authoritative nameservers sid.ns.cloudflare.com and collins.ns.cloudflare.com, confirming that the infrastructure is fully provisioned on Cloudflare’s edge platform. The site presents the HTTP status code 403 and returns a page titled “Suspected phishing site | Cloudflare”, which is the default block page delivered by Cloudflare when a resource is taken offline. The TLS certificate is issued by Google Trust Services under the “WE1” label, indicating a valid certificate chain despite the underlying malicious activity. Multiple security services have flagged the domain.
VirusTotal reports that 16 of 93 scanning engines label the site as malicious, and Google Safe Browsing categorises it as a social‑engineering threat. Independent reputation services assign extremely low scores: Gridinsoft 0/100, Scamadviser 1/100, and the domain appears on at least one known blocklist, currently listed by PhishDestroy. The listed scam type is credential phishing, which aligns with the “Suspected phishing site” page title. Because the domain is presently offline, active probing is limited to passive indicators. The presence of HSTS, HTTP/3, and Cloudflare‑specific headers confirms the use of modern web delivery mechanisms, a pattern often leveraged by threat actors to hide behind reputable infrastructure.
At this stage the exact payload, targeted brand, or credential‑capture infrastructure has not been publicly disclosed, and no samples of the phishing page content are available.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
المخطط الزمني للاكتشاف
الاستخبارات الجنائية الرقمية
التقنيات
حُدّدت ٣ تقنيات عالية الثقة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of metaamask-login-en.pages.dev · checked Mar 2, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب