metamvuask-wa-llet[.]webflow[.]io
“MetaMask® Wallet - The crypto wallet for Defi, Web3 Dapps”
metamvuask-wa-llet.webflow.io — 内容不可用. 品牌冒充:MetaMask; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 19/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLQuery 3 alerts; URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 100/100. 注册商: Webflow.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, metamvuask-wa-llet.webflow.io, is a confirmed brand impersonation threat targeting MetaMask users. The site replicates the official MetaMask wallet interface, presenting the page title 'MetaMask® Wallet - The crypto wallet for Defi, Web3 Dapps' to deceive visitors into entering sensitive credentials, such as seed phrases or private keys. Such impersonation attacks are designed to facilitate unauthorized access to cryptocurrency wallets, leading to potential financial loss and identity compromise. The domain's infrastructure and content are engineered to exploit trust in the MetaMask brand, a common tactic in cryptocurrency phishing campaigns. Analysis indicates the domain was registered on March 22, 2026, through Webflow, a platform often leveraged for rapid deployment of phishing sites. It resolves to the IP address 104.18.36.248, hosted by Cloudflare, Inc. in Canada, a provider frequently used to obfuscate malicious infrastructure. Security vendors have flagged the domain as malicious, with 19 out of 95 engines on VirusTotal detecting it as a threat. Additionally, the domain appears on three security blocklists, including those maintained by cryptocurrency security entities, further corroborating its malicious intent. Users who visited metamvuask-wa-llet.webflow.io should assume their credentials or sensitive information may have been compromised. Immediate actions include revoking access to any connected decentralized applications (dApps), transferring assets to a new wallet with a fresh seed phrase, and monitoring for unauthorized transactions. It is also recommended to review device security for potential malware infections, as phishing sites may distribute additional payloads. Affected individuals should report the incident to relevant security teams and consider enabling multi-factor authentication on all critical accounts to mitigate further risk.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | metamvuask-wa-llet.webflow.io |
phishing | Phishing Block |
| Cloudflare DNS | metamvuask-wa-llet.webflow.io |
malicious | Sinkholed |
| DNS4EU | metamvuask-wa-llet.webflow.io |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 3 identified
Visual website builder with hosted publishing.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of metamvuask-wa-llet.webflow.io · checked Mar 22, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。