metmskuxtension[.]gitbook[.]io
“Metamask® Extension® | Bridge to Ethereum-Based”
साक्ष्य सारांश
This domain, metmskuxtension.gitbook.io, is an active brand impersonation threat specifically targeting MetaMask users through a crypto drainer scheme. The page title 'Metamask Extension | Bridge to Ethereum-Based' mimics legitimate MetaMask branding to deceive visitors into connecting their wallets, leading to asset theft. The domain remains operational and poses a high risk to cryptocurrency users.
Infrastructure analysis reveals the domain is flagged by 15 of 95 VirusTotal security vendors, indicating widespread detection. It is registered through Cloudflare, Inc. and was created on March 30, 2014, which may lend false legitimacy. The domain resolves to IP address 104.18.40.47 and uses an SSL certificate from Google Trust Services. Hosted on GitBook with Google Cloud infrastructure, the site employs Cloudflare, HTTP/3, HSTS, and Google Cloud Trace technologies. No blocklist count or trust scores were provided in the intelligence, but the vendor detection ratio confirms malicious activity.
Current status is active with no reported takedown. Users should avoid visiting or interacting with this domain entirely. Recommendations include blocking the domain at network and browser levels, reporting to hosting providers (GitBook, Google Cloud, Cloudflare), and warning users against connecting wallets or entering credentials on any site associated with this domain. Immediate action is advised to prevent financial losses from crypto drainer attacks.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
पहचान समयरेखा
-
VirusTotal
14 → 15
तकनीकें
7 उच्च-विश्वसनीयता वाली तकनीकें पहचानी गईं
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of metmskuxtension.gitbook.io · checked Jul 10, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।