treasury-flare[.]net
“Un instant…”
Зведення доказів
The domain treasury-flare.net was registered on May 13 2026 through NICENIC INTERNATIONAL GROUP CO., LIMITED and resolves to the IP address 188.114.96.3, which is advertised as part of AS13335 Cloudflare, Inc. The authoritative name servers are adam.ns.cloudflare.com and danica.ns.cloudflare.com, indicating that the site is fronted by Cloudflare's CDN. The TLS certificate presented is issued by Let’s Encrypt (E7), a free certificate authority, and the connection terminates with a valid HTTPS certificate.
The web page served by the domain returns an HTTP 403 status code and presents the title “Un instant…”. The title, together with the brand target of MetaMask, suggests a deliberate impersonation attempt aimed at deceiving MetaMask users. The site has been classified as an impersonation scam and is listed on four independent security blocklists, including SEAL, MetaMask, PhishDestroy, and BLP-Malware.
Risk assessment assigns a high rating to the infrastructure, and the domain is currently marked as active. Gridinsoft assigns a trust score of 0 out of 100, reinforcing the malicious nature of the site. Although the domain has not yet generated detections on VirusTotal, its presence on multiple blocklists and the observed HTTP response demonstrate that the site is operational and being used for brand‑impersonation attacks.
Defenders should incorporate treasury‑flare.net into URL filtering and DNS block policies, and monitor for any outbound connections to the associated Cloudflare IP range. Since the site is hosted behind Cloudflare, direct takedown may be limited, but reporting to the hosting provider and the certificate authority can accelerate remediation. Continuous threat‑intel feeds should be checked for any new indicators tied to this domain.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 13.08.2026
8 зовнішніх джерел під наглядом Збігів немає
Хронологія виявлення
-
VirusTotal
8 → 0
-
Статус домену
Доступний → Недоступний
-
Статус домену
Недоступний → Доступний
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології
Виявлено 2 технології з високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of treasury-flare.net · checked Jul 12, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога