maatrmssk-loggn[.]gitbook[.]io
“𝗠𝗲𝘁å𝗺å𝘀𝗸 𝗟𝗼𝗴𝗶𝗻”
Зведення доказів
The domain maatrmssk-loggn.gitbook.io is identified as a high-risk brand_impersonation threat targeting MetaMask, a cryptocurrency wallet service. As of the latest assessment, the domain has been taken offline, though prior activity indicates malicious intent to deceive users into disclosing sensitive credentials or financial information. Analysis of the infrastructure reveals the domain was registered through Cloudflare, Inc. on March 14, 2026, and resolved to the IP address 172.64.147.209, associated with AS13335 (Cloudflare, Inc.) in the United States. Security vendors flagged the domain on VirusTotal, with 18 out of 95 engines detecting malicious activity. The domain appears on three security blocklists and was actively blocked by PhishDestroy, MetaMask’s internal security systems, and the SEAL consortium. The SSL certificate is issued by Google Trust Services (WE1), and the page title, '𝗠𝗲𝘁å𝗺å𝘀𝗸 𝗟𝗼𝗴𝗶𝗻,' employs Unicode characters to mimic the legitimate MetaMask branding, a tactic commonly used to evade detection and increase perceived authenticity. Current status confirms the domain is offline, though residual risks may persist if cached or archived versions remain accessible. Organizations and users are advised to verify domain authenticity before interacting with any login portals, particularly those requesting cryptocurrency wallet credentials. Security teams should update blocklists to include this domain and monitor for similar impersonation attempts leveraging Unicode spoofing or Cloudflare-hosted infrastructure. If credentials were entered on this domain, immediate password resets and wallet security reviews are recommended.
Data Coverage
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | maatrmssk-loggn.gitbook.io |
malicious | Sinkholed |
| DNS4EU | maatrmssk-loggn.gitbook.io |
malicious | Sinkholed |
| DigiCert UltraDNS | maatrmssk-loggn.gitbook.io |
malicious | Sinkholed |
| Quad9 DNS | maatrmssk-loggn.gitbook.io |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
8 зовнішніх джерел під наглядом Збігів немає
Хронологія виявлення
-
VirusTotal
0 → 9
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of maatrmssk-loggn.gitbook.io · checked Mar 14, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога