matmskshlogi[.]webflow[.]io
“Metamask Login - Browser Extension | Digital Crypto Wallet”
संग्रहीत अवलोकन
देखा गया शीर्षक अंतर
साक्ष्य सारांश
The domain matmskshlogi.webflow.io was identified as a brand‑impersonation site targeting MetaMask users. The page title observed in earlier crawls reads “Metamask Login – Browser Extension | Digital Crypto Wallet”, indicating an attempt to lure victims into entering wallet credentials. VirusTotal reports indicate that 15 of 95 scanned engines flagged the host, reflecting a moderate level of malicious confidence. Registration data shows the domain was created on 08 May 2013 and is managed through MarkMonitor, Inc., a registrar commonly used by legitimate enterprises, which may aid evasion.
DNS resolution points to 172.64.151.8, an address owned by Cloudflare (AS13335) located in the United States. The site employed Cloudflare services, including HTTP/3, and presented a TLS certificate issued by Google Trust Services under the WE1 root, confirming the use of a valid public‑trusted certificate. Nameserver records list journey.ns.cloudflare.com and lamar.ns.cloudflare.com, consistent with the hosting provider. At the time of analysis the HTTP response returned a 404 status code and the domain is reported offline, suggesting the malicious payload has been removed or the operators have taken the site down.
Nonetheless, the domain appears on at least one security blocklist and was blocked by PhishDestroy, reinforcing its classification as a crypto‑related scam. The combination of a convincing MetaMask‑oriented page title, a reputable TLS certificate, and Cloudflare infrastructure makes the site capable of bypassing naïve URL‑based filters. Defenders should continue to block the domain at perimeter and endpoint layers, monitor for any re‑registration or reuse of the same host IP, and update threat‑intel feeds with the observed indicators. Additional investigation of historical snapshots or archived content may reveal the exact phishing flow that was previously served.
Data Coverage
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
पहचान समयरेखा
-
डोमेन स्थिति
पहुँच योग्य → पहुँच योग्य नहीं
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
तकनीकें
2 उच्च-विश्वसनीयता वाली तकनीकें पहचानी गईं
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।