mail[.]metamaskwallet-restore[.]com
Domain Security & Threat Intelligence Report
Analyst Security Overview
AI-GeneratedThe domain mail.metamaskwallet-restore.com is designed to impersonate MetaMask, a well-known cryptocurrency wallet platform, engaging in deceptive practices to capture sensitive information from users. With a VirusTotal score of 13/95, this domain is flagged as potentially harmful, indicating its role in phishing attacks targeting cryptocurrency wallet users.
Registered just three days ago through Dominet (HK) Limited in the US, the domain has already shown signs of malicious intent, as evidenced by its listing on blocklists and detections on multiple security platforms. The associated IP address, 195.250.27.134, raises concerns about its infrastructure, particularly given its short lifespan and low trust rating across security services.
Currently, the domain remains active and poses an ongoing threat to users seeking to access MetaMask services. PhishDestroy has reported this phishing attempt and continues to monitor its status to ensure adequate response measures are in place to protect potential victims from this scam.
Threat Response Pipeline
Public Blocklist Status
Website Screenshot
Domain Intelligence
cloud2.listedhosting.net
domainabuse@service.aliyun.com
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If you have interacted with this domain, entered personal information, or connected a cryptocurrency wallet — take immediate action. Below are resources to help you report the incident and protect yourself.
Report to Your Local Authorities
Select your country to see local cybercrime reporting contacts and complaint templates.
Related Domain Reports
Other Domains on 195.250.27.134
More Domains at Dominet (HK)Limited
Stay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive
URLScan Report