miihtanask-waallet[.]gitbook[.]io
“Metamask Wallet: the Crypto Wallet for Defi, Web3 Dapps and Nfts | Metamask Wallet: the Crypto Wall…”
miihtanask-waallet.gitbook.io — Último activo conocido (HTTP 307). Suplantación de marca: MetaMask; Tipo de estafa: Crypto Scam. Resumen de las pruebas: VirusTotal 13/91 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, CyRadar); URLQuery 100 det.; URLScan malicious verdict; PhishDestroy score 100/100. Registrador: Cloudflare.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
The domain miihtanask-waallet.gitbook.io is currently active and classified as a high‑risk brand‑impersonation campaign targeting the MetaMask cryptocurrency wallet. Infrastructure analysis shows the site is hosted behind Cloudflare (nameservers dahlia.ns.cloudflare.com and hugh.ns.cloudflare.com) and resolves to IP 172.64.147.209, a Cloudflare edge located in the United States (AS13335). The TLS certificate is issued by Google Trust Services under the WE1 identifier, and the server responds with HTTP status 307, indicating a redirect. The page title returned by the host reads “Metamask Wallet: the Crypto Wallet for Defi, Web3 Dapps and Nfts | Metamask Wall”, confirming the use of the MetaMask brand in the content. Reputation metrics are poor: Gridinsoft assigns a trust score of 0 / 100, the domain appears on one public blocklist, and PhishDestroy has already blocked it. VirusTotal scans report 14 of 95 security vendors flagging the domain as malicious. The registration date is March 30 2014, and the domain was registered through Cloudflare, Inc. No additional content analysis is available, so the exact phishing page layout remains unknown. Defenders should block the domain at perimeter filters, monitor DNS queries for the IP address 172.64.147.209, and add the host to internal blocklists. Continuous observation of Cloudflare‑hosted assets linked to MetaMask impersonation is recommended, as the attacker may reuse the same infrastructure for future campaigns.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Tecnologías · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Análisis de VirusTotal
Evidencias archivadas
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.