methmmsklgnc[.]gitbook[.]io
methmmsklgnc.gitbook.io için kimlik avı ve güvenlik kontrolü
“MetaMask® Łøgin | us”
methmmsklgnc.gitbook.io — Bilinen son aktif (HTTP 307). Marka kimliğine bürünme: MetaMask; Dolandırıcılık türü: Crypto Scam. Kanıt özeti: VirusTotal 14/91 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, CyRadar); URLQuery 3 alerts; URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 100/100. Kayıt kuruluşu: Cloudflare.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Analysis indicates that methmmsklgnc.gitbook.io is currently active and flagged for brand impersonation targeting MetaMask. The page title MetaMask® Łøgin | us directly references the brand. VirusTotal reports detections from 13 out of 95 security vendors while the domain appears on 3 security blocklists. Gridinsoft assigns a trust score of 0 out of 100. The site returns HTTP status 307 and remains listed as blocked by PhishDestroy, MetaMask and SEAL. The scam classification is recorded as cryptocurrency related.
Infrastructure analysis reveals the domain resolves to IP address 172.64.147.209 located in the US under AS13335 Cloudflare, Inc. Nameservers are listed as dahlia.ns.cloudflare.com and hugh.ns.cloudflare.com. The domain was registered through Cloudflare, Inc. on March 14, 2026 and uses an SSL certificate issued by Google Trust Services under the WE1 profile. Technologies detected include Cloudflare and HTTP/3.
What remains uncertain is the precise duration of operation prior to the first detections and the full extent of any associated infrastructure beyond the single IP observed. No additional domains or linked endpoints appear in the provided intelligence. Defenders should block the IP 172.64.147.209 at network boundaries, monitor for similar gitbook.io subdomains, and update internal blocklists with the exact domain string methmmsklgnc.gitbook.io. Regular review of vendor blocklist feeds is recommended given the current active status as of July 12, 2026.
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | methmmsklgnc.gitbook.io |
malicious | Sinkholed |
| DigiCert UltraDNS | methmmsklgnc.gitbook.io |
malicious | Sinkholed |
| Quad9 DNS | methmmsklgnc.gitbook.io |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal Analizi
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin