webmail[.]metamaskpayouts[.]io
“Webmail Login”
証拠の概要
This report analyzes the domain webmail.metamaskpayouts.io, which was identified as an active threat. The site presents a "Webmail Login" page while impersonating the MetaMask brand, classifying it as a cryptocurrency-targeted scam. The primary threat posed is credential harvesting, where users are deceived into entering login credentials intended for a legitimate MetaMask service, leading to potential cryptocurrency wallet compromise and financial loss.
Technical analysis reveals the domain was created on 2026-02-21 and is hosted on IP address 94.130.140.179, located in Germany and assigned to AS24940 Hetzner Online GmbH. It uses a Let's Encrypt SSL certificate (issuer R13). VirusTotal detections show 6 out of 95 vendors flagged the domain as malicious, with specific flags from ChainPatrol, ESET, Fortinet, Seclookup, and SOCRadar. The domain is listed on one blocklist and holds a DOM risk score of 63.
The domain is currently offline and non-responsive. Despite its inactive status, the risk level remains elevated due to the specific impersonation of a major cryptocurrency brand and the domain's recent creation date. The combination of a high-risk score, multiple vendor flags, and targeted scam type warrants continued monitoring and blocking.
Data Coverage
脅威対応 Pipeline
ブロックリストの確認範囲
監視対象の外部情報源 10 件 · 保存スナップショット 2026年8月13日
検出タイムライン
VirusTotalによる分析
サイト設定分析
このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください