help-mtscmskkextnsn[.]gitbook[.]io
“Metamask® Chrome® Extension® | Getting started with MetaMask”
Resumo das evidências
The domain help-mtscmskkextnsn.gitbook.io poses a brand impersonation threat, targeting users of the MetaMask Chrome extension. This domain is designed to trick users into believing they are accessing legitimate MetaMask resources, potentially leading to the disclosure of sensitive information such as private keys, wallet addresses, and login credentials.
Analysis indicates that the domain was registered through Cloudflare, Inc., and created on March 30, 2014. It resolves to the IP address 104.18.40.47, which is located in the United States under the AS13335 Cloudflare, Inc. network. The SSL certificate is issued by Google Trust Services / WE1, adding a layer of perceived legitimacy. According to VirusTotal, 17 out of 95 security vendors have flagged this domain as malicious, and it appears on 1 security blocklist. The domain was successfully taken offline, but the potential risk remains for those who may have visited it before it was blocked.
If users have visited help-mtscmskkextnsn.gitbook.io, they should immediately check their MetaMask accounts for any unauthorized activity. It is recommended to change passwords and enable two-factor authentication (2FA) if not already in place. Users should also monitor their transaction history and consider reporting any suspicious activity to MetaMask support. Regular security updates and cautious verification of domain URLs can help prevent future incidents of brand impersonation.
Data Coverage
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DigiCert UltraDNS | help-mtscmskkextnsn.gitbook.io |
malicious | Sinkholed |
| DNS4EU | help-mtscmskkextnsn.gitbook.io |
malicious | Sinkholed |
| Cloudflare DNS | help-mtscmskkextnsn.gitbook.io |
malicious | Sinkholed |
| OpenDNS | help-mtscmskkextnsn.gitbook.io |
phishing | Phishing Block |
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 12/08/2026
10 fontes externas monitoradas Sem correspondência
Linha do tempo de detecção
-
VirusTotal
0 → 17
-
Cloudflare Radar
Varredura do Cloudflare Radar armazenada · Abrir varredura
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo