meta-mushkglog[.]godaddysites[.]com
“Met𝖆mask Login”
meta-mushkglog.godaddysites.com — Непроверенный. Тип мошенничества: Credential Phishing. Сводка доказательств: VirusTotal 17/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, ESET, Emsisoft); CF Radar malicious; PhishDestroy score 95/100. Регистратор: GoDaddy Sites.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain meta-mushkglog.godaddysites.com is actively engaged in credential phishing, as evidenced by its page title, which is "Met𝖆mask Login." This suggests an attempt to deceive users into providing sensitive login information. The domain resolves to the IP address 76.223.105.230, registered through GoDaddy Sites, and is currently active with an HTTP status of 200. The domain has been flagged by 17 out of 91 security vendors on VirusTotal and appears on one security blocklist, indicating recognition as a threat by multiple security entities. Additionally, it is blocked by PhishDestroy, which further corroborates its malicious intent. The SSL certificate associated with this domain is issued by GoDaddy.com, which is a standard practice for many domains but does not imply legitimacy in this context. The infrastructure is located in the US, utilizing AWS Global Accelerator, which is often used for speed optimization but can also be associated with malicious activities. Defenders should consider implementing measures to block access to this domain and educating users about the potential risks of phishing attacks targeting cryptocurrency wallets, specifically Metamask, as suggested by the page title.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Registration: godaddysites.com
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain godaddysites.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 4 identified
RequireJS is a JavaScript library and file loader which manages the dependencies between JavaScript files and in modular programming.
requirejs.org 100% уверенностиRe:amaze is a multi-brand customer service, live chat, and help desk solution.
www.reamaze.com 100% уверенностиHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиАнализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание