community-metamask[.]io
“community-metamask.io”
community-metamask.io — Контент недоступний. Уособлення бренду: MetaMask; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 11/93 (ChainPatrol, alphaMountain.ai, BitDefender, CRDF, CyRadar); 2 external blocklist matches (ScamSniffer, Enkrypt); PhishDestroy score 85/100.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain community-metamask.io was registered on February 21, 2026 and is currently listed as offline. Infrastructure analysis shows the domain resolves to the IP address 15.197.130.221, which is hosted by Amazon.com, Inc. (AS16509) in the United States. The SSL certificate presented by the site is identified as type R10, indicating a valid TLS layer at the time of observation. The page title returned from the HTTP response is exactly "community-metamask.io," matching the domain name and providing no additional context about the hosted content.
Multiple security‑focused blocklists have flagged the domain. It is listed by PhishDestroy, ScamSniffer, and Enkrypt, and appears on three distinct security blocklists. VirusTotal scans show that 11 of 93 AV engines flagged the domain as malicious, reinforcing the suspicion of malicious intent. AlienVault OTX references include two separate threat‑intel pulses that cite the domain as part of a crypto‑related scam campaign targeting MetaMask users.
The threat classification is recorded as a brand impersonation campaign aimed at the MetaMask brand, with the scam type labeled as a crypto scam. No public content was captured before the domain was taken offline, so the exact landing page design, credential‑capture mechanisms, or malicious payloads remain unverified. However, the convergence of blocklist listings, AV detections, and OTX references provides a strong indication of an active threat infrastructure.
Defenders should add community-metamask.io to DNS and URL filtering policies, block the associated IP address range 15.197.130.221, and monitor for any future re‑registration attempts. Continuous re‑evaluation of the domain’s status is advised, as the offline indicator may change if the operators redeploy the site on a different hosting platform.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога