kingmanyu[.]info
“King Manyu - ETH”
kingmanyu.info — 内容不可用. 品牌冒充:MetaMask; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 1/93 (Gridinsoft); 1 external blocklist match (ScamSniffer); PhishDestroy score 58/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
kingmanyu.info was registered on 21 February 2026 and currently resolves to the Cloudflare‑owned address 188.114.96.3, AS13335, located in the United States. The site presents the page title “King Manyu – ETH” and is classified as a crypto‑scam that impersonates the Metamask brand. Infrastructure analysis shows the domain is protected by an SSL certificate identified as “WE1”, and the host is served through Cloudflare’s network, a common choice for fast‑flux and phishing operators seeking anonymity.
The domain appears on two independent security blocklists: PhishDestroy and ScamSniffer, and it received a Gridinsoft trust score of 0 out of 100, indicating a high confidence of malicious intent. VirusTotal recorded a single positive detection out of 93 scanning engines, further confirming the presence of suspicious activity. The site has been taken offline at the time of reporting, but historical data suggest it was used to lure victims into a Metamask‑related credential‑harvesting flow, consistent with its “Crypto Scam” label.
Defenders should continue to block the domain at perimeter and DNS filtering layers, monitor for any re‑registration attempts, and watch for other domains that resolve to the same Cloudflare IP range and exhibit similar page titles or SSL characteristics. Because the domain leverages a reputable CDN, additional scrutiny of TLS handshake anomalies and rapid DNS changes may help identify future clones. Ongoing threat‑intel feeds should be consulted for updates, and incident response teams should be prepared to advise users to verify Metamask URLs against official sources before entering any credentials.
威胁响应 Pipeline
公共封禁名单状态
取证情报
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。