evm-mn[.]netlify[.]app
Сводка доказательств
Analysis of evm-mn.netlify.app indicates a confirmed phishing infrastructure targeting cryptocurrency wallet credentials, specifically MetaMask users. The domain, hosted on Netlify's platform, resolves to IP address 35.157.26.135 and is actively blocked by three security vendors: PhishDestroy, MetaMask's internal threat intelligence, and the SEAL consortium. No detections were recorded by the 91 vendors that scanned the domain on VirusTotal as of August 7, 2026, though this absence does not confirm safety and should not be interpreted as an all-clear signal. The domain's presence on multiple blocklists suggests prior malicious activity or high-risk characteristics, though the exact phishing kit or lure mechanism remains unconfirmed.
No brand-specific page title or scam classification beyond 'generic phishing' has been provided, limiting attribution to a specific threat actor or campaign. Infrastructure analysis reveals the domain is served via Netlify's content delivery network, a common tactic to leverage legitimate hosting providers for phishing operations. The HTTP status, SSL certificate validity, and registrar details are not included in available intelligence, restricting further technical assessment. Defenders are advised to treat evm-mn.netlify.app as an active threat.
Network-level blocking is recommended for organizations handling cryptocurrency transactions or MetaMask-related services. If additional telemetry becomes available—such as phishing kit fingerprints, lure pages, or victim reports—prioritize updating detection rules to account for potential variations in domain naming or hosting infrastructure. Given the domain's association with MetaMask credential harvesting, wallet providers and exchanges should monitor for related login attempts or transaction anomalies originating from this infrastructure.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
8 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Первая запись
Первое сохранённое значение: Доступен
-
Статус домена
Доступен → Недоступен
Технологии
Выявлено 4 технологии с высокой уверенностью
Анализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of evm-mn.netlify.app · checked Aug 7, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание