metammaskcrypt0login[.]webflow[.]io
“metamask login, metamask sign in, metamask login error”
Résumé des preuves
The domain metammaskcrypt0login.webflow.io is a phishing site engaged in brand impersonation targeting MetaMask users. It presents fraudulent login pages designed to harvest cryptocurrency wallet credentials, posing an elevated risk of unauthorized access and financial theft. No drainer kit was detected, but the site impersonates MetaMask to deceive victims into entering sensitive information. As of the latest verification, metammaskcrypt0login.webflow.io has been taken offline.
Technical indicators confirm the malicious nature of metammaskcrypt0login.webflow.io. The domain is flagged by 13 of 95 security vendors on VirusTotal, including ChainPatrol, alphaMountain.ai, and BitDefender. It appears on one security blocklist, PhishDestroy, though Google Safe Browsing has not flagged it. Registered through MarkMonitor, Inc. on May 08, 2013, the domain resolves to the IP address 104.18.36.248, hosted by Cloudflare in the US (AS13335). The SSL certificate is issued by Google Trust Services / WE1, and observed page titles include 'metamask login', 'metamask sign in', and 'metamask login error'. The site employs Cloudflare and HTTP/3 technologies, and currently returns an HTTP 404 status.
Victims of metammaskcrypt0login.webflow.io should immediately change their MetaMask passwords and enable two-factor authentication if available. Revoke any token approvals granted during the suspected compromise and transfer funds to a new, secure wallet. Monitor accounts for unauthorized transactions and report the incident to MetaMask support. Additionally, report the phishing domain to Google Safe Browsing, PhishTank, and local cybersecurity authorities to aid in mitigation efforts.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 13/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
État du domaine
Accessible → Inaccessible
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
Technologies
2 technologies identifiées avec une forte confiance
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif