metamask--us-eng[.]pages[.]dev
“Suspected phishing site | Cloudflare”
साक्ष्य सारांश
Analysis of metamask--us-eng.pages.dev shows a high‑risk brand‑impersonation campaign targeting MetaMask users. The domain was registered on February 21, 2026 through Cloudflare, Inc. and resolves to 172.66.47.59, an address owned by Cloudflare (AS13335) in the United States. The site served over HTTPS using a certificate issued by Google Trust Services / WE1, and the HTTP response returned a 403 status code. The page title presented by the server is "Suspected phishing site | Cloudflare," indicating that the content was flagged by Cloudflare’s own protection mechanisms.
Independent scanning on VirusTotal recorded 12 detections out of 93 security vendors, and Google Safe Browsing categorised the URL as a social‑engineering threat. The domain appears on one security blocklist and has been actively blocked by PhishDestroy. Additional telemetry shows a Gridinsoft trust score of 0 / 100 and nameservers lola.ns.cloudflare.com and rajeev.ns.cloudflare.com.
The site is currently offline, limiting direct observation of the payload or specific credential‑harvesting pages. Defenders should immediately block the domain and its underlying IP address at network perimeters, add the host to internal threat‑intel feeds, and monitor for similarly‑named subdomains under the pages.dev namespace. Continuous observation of Cloudflare‑hosted IP ranges for new registrations resembling the MetaMask brand is recommended, as the infrastructure indicates a low‑cost, fast‑deployment model that can be replicated quickly.
Data Coverage
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 13/08/2026
पहचान समयरेखा
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
-
डोमेन स्थिति
पहुँच योग्य → पहुँच योग्य नहीं
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
फॉरेंसिक इंटेलिजेंस
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of metamask--us-eng.pages.dev · checked Apr 13, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।