meetmickloga[.]webflow[.]io
“MetaMask Login - A crypto wallet & gateway to blockchain”
Resumo das evidências
The domain meetmickloga.webflow.io was registered through MarkMonitor, Inc. on May 08, 2013 and is currently pointed at Cloudflare nameservers journey.ns.cloudflare.com and lamar.ns.cloudflare.com. DNS resolution maps the hostname to the IP address 172.64.151.8, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. The site presents a TLS certificate issued by Google Trust Services under the WE1 root, confirming that HTTPS is enabled but offering no additional trust beyond the hosting provider. HTTP requests return a 404 status, indicating that the expected content is not being served at the time of analysis; the domain’s current status is taken offline.
The page title observed in prior captures reads "MetaMask Login - A crypto wallet & gateway to blockchain," directly referencing the MetaMask brand and aligning with the reported scam type of a crypto‑related impersonation. Google Safe Browsing flags the domain for social engineering, and VirusTotal scans show that 14 of 95 security vendors have flagged the host, reflecting a moderate level of detection across commercial products. The domain appears on one external blocklist and has been listed by the PhishDestroy takedown service, confirming that community‑driven defenses have already acted against it. The infrastructure utilizes Cloudflare’s HTTP/3 protocol, which is typical for many legitimate services but also provides attackers with performance and anonymity benefits.
While the site is no longer serving the phishing page, the registration details, hosting configuration, and observed page title constitute concrete indicators that this domain was deliberately crafted to lure MetaMask users into disclosing credentials or private keys. Defenders should continue to block the domain at network perimeter devices, update URL filtering rules to include the host, and monitor for any re‑registration attempts or similar look‑alike subdomains.
Data Coverage
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 13/08/2026
10 fontes externas monitoradas Sem correspondência
Linha do tempo de detecção
-
Status do domínio
Acessível → Inacessível
-
Cloudflare Radar
Varredura do Cloudflare Radar armazenada · Abrir varredura
Tecnologias
2 tecnologias identificadas com alta confiança
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo