support-metamssk-eng[.]pages[.]dev
“Suspected phishing site | Cloudflare”
ملخص الأدلة
The domain support-metamssk-eng.pages.dev has been confirmed as a crypto wallet drainer phishing site targeting cryptocurrency users. Analysis indicates this infrastructure was designed to impersonate MetaMask support pages, tricking victims into revealing wallet credentials or authorizing malicious transactions that directly drain funds. The domain is currently offline, though residual risk remains for users who may have interacted with it during its active window. Infrastructure analysis reveals the domain was registered through Cloudflare, Inc. on November 06, 2025, and resolved to the IP address 188.114.97.3 (AS13335, United States). The domain appears on one security blocklist and is flagged by 14 of 95 VirusTotal security vendors. Google Safe Browsging categorizes it as phishing, while the SSL certificate (Google Trust Services / WE1) was issued to maintain the appearance of legitimacy. The page title explicitly states 'Suspected phishing site | Cloudflare,' though this may have been added post-takedown. Current status indicates the domain has been taken offline, though similar infrastructure may re-emerge under different naming conventions. Users are advised to revoke any wallet authorizations granted during the exposure window (November 6-10, 2025) and monitor connected accounts for unauthorized transactions. Organizations should add the domain and associated IP (188.114.97.3) to internal blocklists, while individuals should verify MetaMask communications exclusively through the official metamask.io domain. Wallet software should be updated to the latest version to mitigate known phishing vectors.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 13/08/2026
المخطط الزمني للاكتشاف
الاستخبارات الجنائية الرقمية
التقنيات
حُدّدت ٣ تقنيات عالية الثقة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of support-metamssk-eng.pages.dev · checked Mar 2, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب