metamasklgin-co-us[.]gitbook[.]io
“MetamaskLogin - Your Key to Accessing the Decentralized | us”
Kanıt özeti
This domain, metamasklgin-co-us.gitbook.io, poses a direct threat to cryptocurrency users by impersonating MetaMask, a widely used digital wallet service. The site presents a fraudulent login interface designed to harvest credentials, seed phrases, or private keys from unsuspecting victims. Once obtained, these sensitive details enable attackers to gain unauthorized access to victims' wallets, leading to the theft of digital assets. The page title, 'MetamaskLogin - Your Key to Accessing the Decentralized | us,' mimics legitimate MetaMask branding to deceive users into believing the site is authentic. Analysis indicates the site is actively targeting individuals seeking to access decentralized applications or manage their crypto holdings. Infrastructure analysis reveals multiple technical indicators confirming the malicious nature of this domain. The domain was created on March 30, 2014, though the impersonation content appears to be a recent addition, leveraging an older domain to evade initial scrutiny. It resolves to the IP address 172.64.147.209, hosted on Cloudflare's network (AS13335). VirusTotal reports that 18 out of 95 security vendors have flagged this domain as malicious, with detections including phishing and brand impersonation. The domain is registered through Cloudflare, Inc., and its SSL certificate is issued by Google Trust Services (WE1). Additionally, the domain appears on one security blocklist and is actively blocked by at least one threat intelligence provider. Users who have visited metamasklgin-co-us.gitbook.io or entered any information on the site should take immediate action to mitigate potential risks. First, disconnect any active sessions with decentralized applications and revoke permissions granted to unknown or suspicious sites via wallet settings. Second, transfer all digital assets from the compromised wallet to a new, secure wallet with a fresh seed phrase. Avoid reusing passwords or seed phrases from the affected wallet. Third, monitor the original wallet for unauthorized transactions and report any suspicious activity to the relevant blockchain explorer or security platform. Finally, scan the device used to access the site for malware, as phishing sites may deploy additional payloads to maintain persistence or exfiltrate further data.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 13.08.2026
Tespit zaman çizelgesi
-
Alan adı durumu
Erişilebilir → Erişilemiyor
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
-
Alan adı durumu
Erişilebilir → Erişilemiyor
-
Alan adı durumu
Erişilebilir → Erişilemiyor
-
Alan adı durumu
Erişilebilir → Erişilemiyor
Teknolojiler
2 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin