meixmetalogiin[.]gitbook[.]io
“The Benefits of Logging In with Metamask | us”
Зведення доказів
Analysis of meixmetalogiin.gitbook.io indicates active brand impersonation targeting MetaMask, a cryptocurrency wallet service. The domain, registered through Cloudflare, Inc. on March 30, 2014, currently resolves to IP 104.18.40.47, hosted on AS13335 (Cloudflare, Inc.) in the United States. The SSL certificate is issued by Google Trust Services (WE1), and the domain uses Cloudflare nameservers (dahlia.ns.cloudflare.com, hugh.ns.cloudflare.com). The page title, 'The Benefits of Logging In with Metamask | us,' directly references MetaMask, aligning with the classified scam type of crypto fraud. As of July 12, 2026, the domain remains active, returning an HTTP 307 status code, which may indicate temporary redirection or proxy behavior. Security vendor detections are present but limited: 11 of 95 engines on VirusTotal flag the domain, and it appears on at least one security blocklist. Gridinsoft assigns a trust score of 0/100, further suggesting malicious intent. The long-standing registration date (over a decade) does not mitigate risk, as threat actors frequently abuse legitimate infrastructure or repurpose older domains. No evidence confirms whether this is a credential-harvesting page, a crypto drainer, or another form of fraud, as the exact content remains unanalyzed. Defenders should treat this domain as high-risk due to confirmed brand impersonation, crypto scam classification, and active security vendor detections. Immediate blocking at the DNS or network layer is recommended. Monitoring for associated IP or certificate reuse may help identify related campaigns. Further investigation into redirection chains or backend infrastructure could clarify the attack methodology, but current evidence justifies proactive mitigation.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 12.08.2026
Хронологія виявлення
-
Статус домену
Доступний → Недоступний
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
-
VirusTotal
14 → 11
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога