mettsk-log-web[.]daftpage[.]com
“MetaMask || Log In Sign In to Your Account”
संग्रहीत पहचान
क्लोकिंग चेतावनी
- क्लोकिंग प्रकार
status_split- क्लोकिंग स्कोर
- 1/6
साक्ष्य सारांश
The domain mettsk-log-web.daftpage.com is currently active and flagged as a high‑risk brand‑impersonation campaign targeting MetaMask users. The site presents the page title “MetaMask || Log In Sign In to Your Account”, indicating an attempt to lure credential submissions. The threat is classified as a cryptocurrency‑related scam.
Infrastructure analysis shows the domain resolves to IP 216.150.16.1, which belongs to Amazon.com, Inc. (AS16509) and is geolocated in the United States. The domain is served over HTTPS using a Let’s Encrypt R13 certificate and enforces HTTP Strict Transport Security. DNS is delegated to ns1.vercel-dns.com and ns2.vercel-dns.com, consistent with Vercel hosting. An HTTP 308 status code indicates a permanent redirect, likely to enforce HTTPS. The web stack includes Node.js, React, Next.js, and embedded YouTube content, with Google Analytics and Crisp Live Chat scripts present.
Reputation services provide strong signals of malicious intent. VirusTotal records 11 detections out of 95 scanned scanners, and Google Safe Browsing lists the domain under the “SOCIAL_ENGINEERING” category. Gridinsoft assigns a trust score of 0 out of 100, and the domain appears on one external blocklist. Registration was performed through OVH, SAS, and the domain was created on 24 October 2021. The scam type is identified as cryptocurrency, aligning with the MetaMask brand target.
Defenders should block the domain at network and endpoint layers, enforce DNS sink‑holing for the associated nameservers, and monitor for traffic to the 216.150.16.1 host. Incident response teams should flag any credential submissions referencing MetaMask as compromised and advise users to change passwords and revoke any unauthorized tokens. Continuous monitoring of the IP range owned by AS16509 is recommended, as the infrastructure may be reused for additional impersonation campaigns.
Data Coverage
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 10/08/2026
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
Registration: daftpage.com
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For the registrable domain daftpage.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of mettsk-log-web.daftpage.com · checked Mar 2, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।