metamasklogess[.]webflow[.]io
“Metamask® login - Metamask® Extension”
Observation enregistrée
Contraste de titres observé
Résumé des preuves
The domain metamasklogess.webflow.io is associated with brand impersonation, specifically targeting users of the MetaMask service. This domain attempts to deceive users into believing they are interacting with the legitimate MetaMask platform. It employs tactics typical of such impersonation schemes, including the use of a domain name and page title that closely mimic the legitimate brand. Although no specific crypto drainer kit is identified, the intent appears to focus on credential theft from unsuspecting users.
A thorough investigation reveals the domain was registered through MarkMonitor, Inc. and has been operational since May 08, 2013. Despite its age, the illegitimate activity associated with the domain has recently come to light. The domain is currently flagged on VirusTotal by 16 out of 95 security vendors, underscoring the significant detection of malicious activity in association with it. The site resolves to IP address 172.64.151.8, which is located within the United States and is hosted by Cloudflare, Inc. Two security blocklists currently include this domain, indicating its widespread recognition as a threat. Although the domain's SSL certificate is issued by Google Trust Services, this does not imply legitimacy, as SSL certificates can be exploited in phishing schemes to lend false credibility.
The domain is currently offline, a status resulting from corrective action taken to mitigate its threat. Despite its offline status, the potential risk remains for similar domains to emerge, leveraging the same impersonation tactics. Users are advised to remain vigilant and verify URLs carefully before entering credentials. Security teams should maintain updated threat intelligence feeds and deploy proactive monitoring strategies to detect such impersonation attempts swiftly. Continued collaboration with security vendors and blocklists can help in early detection and swift mitigation of similar threats in the future.
Data Coverage
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 12/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
État du domaine
Accessible → Inaccessible
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Technologies
2 technologies identifiées avec une forte confiance
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of metamasklogess.webflow.io · checked Mar 2, 2026
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif