support-metaamsk-extansion[.]pages[.]dev
“Suspected phishing site | Cloudflare”
support-metaamsk-extansion.pages.dev — Контент недоступен. Тип мошенничества: Tech Support Scam. Сводка доказательств: VirusTotal 11/93 (ChainPatrol, BitDefender, CyRadar, ESET, Fortinet); Google Safe Browsing flagged; PhishDestroy score 83/100. Регистратор: Cloudflare.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, support-metaamsk-extansion.pages.dev, is identified as a high-risk phishing site designed to impersonate the MetaMask cryptocurrency wallet service. Analysis indicates the infrastructure was specifically crafted to deceive users into divulging wallet recovery phrases or private keys through a fraudulent support interface. The phishing kit appears generic but employs social engineering tactics common to cryptocurrency drainers, including urgency cues and official branding mimicry. Infrastructure analysis reveals the domain was registered through Cloudflare, Inc. on October 21, 2025, and resolves to the IP address 188.114.96.3, associated with Cloudflare's US-based autonomous system (AS13335). Detection metrics show 11 out of 95 security vendors flagged this domain on VirusTotal, while Google Safe Browsing explicitly classifies it as phishing. The domain appears on one security blocklist, and its SSL certificate is issued by Google Trust Services (WE1). The page title, 'Suspected phishing site | Cloudflare,' suggests prior automated detection by the hosting provider. As of the latest assessment, the domain has been taken offline, likely due to enforcement actions by the registrar or hosting provider. However, residual risk persists as threat actors may re-deploy the phishing kit under a new domain or infrastructure. Users who interacted with this domain are advised to revoke any connected wallet sessions, monitor for unauthorized transactions, and verify the legitimacy of any cryptocurrency-related communications through official channels only.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of support-metaamsk-extansion.pages.dev · checked Apr 22, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание