metamaskloginjn[.]webflow[.]io
“Whip into shape your digital funds with MetaMask login”
metamaskloginjn.webflow.io — Контент недоступний. Уособлення бренду: MetaMask; Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, ESET, Emsisoft, Fortinet); URLQuery 2 alerts; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 100/100. Реєстратор: Webflow.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
metamaskloginjn.webflow.io has been confirmed as an active brand impersonation site targeting MetaMask users. The threat involves a fraudulent Webflow subdomain designed to harvest credentials or seed phrases under the guise of a legitimate login portal. No crypto drainer kit has been observed in this campaign; the attack vector relies on social engineering and domain spoofing rather than malicious contract deployment.
PhishDestroy identifies this domain as resolving to IP 172.64.151.8, hosted on Cloudflare infrastructure. The domain was registered through Google Domains and leverages a Google Trust Services SSL certificate to enhance legitimacy. VirusTotal analysis shows 15 out of 95 security vendors flagged this domain for malicious activity. It has been observed on two public blocklists, including Phishunt and OpenPhish, and is currently categorized in Google Safe Browsing (GSB) as a phishing resource.
This domain remains active and poses an elevated risk to cryptocurrency users seeking MetaMask access. Immediate user action includes avoiding the domain entirely and reporting it via browser safety tools. Organizations should update threat intelligence feeds and endpoint protections to block metamaskloginjn.webflow.io and its associated IP. While current detections are moderate, the lack of complex drainer infrastructure suggests potential for rapid expansion. Users are advised to verify access points only via official MetaMask domains and enable multi-factor authentication where applicable.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | metamaskloginjn.webflow.io |
malicious | Sinkholed |
| Cloudflare DNS | metamaskloginjn.webflow.io |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 3 identified
Webflow is Software-as-a-Service (SaaS) for website building and hosting.
webflow.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of metamaskloginjn.webflow.io · checked May 23, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога