Security Scan Report: www.metamask-login.vercel.app

Redirected to:
https://metamask-login.vercel.app/
Site favicon
Submitted: Sep 17, 2026, 1:45:31 PMCompleted: Sep 17, 2026, 1:46:23 PMpubliccompleted

This website contacted 4 IPs in 1 country across 2 domains to perform 6 HTTP transactions. The main domain is metamask-login.vercel.app and was registered 6 years ago.

Submitted URL: http://www.metamask-login.vercel.app/

Effective URL:

https://metamask-login.vercel.app/
Redirected

AI Security Verdict

High Risk

Confidence: 80%

8
Risk Score

Phishing page impersonating MetaMask on a vercel.app subdomain. Threat intel and IDS flag it; wallet connect button likely malicious. Avoid interaction and report.

Risk Factors (5)
Brand impersonation of MetaMask on a non-official domain
Phishing threat-intel report on the primary domain
IDS alerts for abused cloud hosting service (vercel.app)
Wallet connect prompt on a page mimicking a login portal
Unranked domain on a shared hosting platform with unknown age
Domain age information unavailable

Details

Page Title

Metamask Login

Scan Type

public

Domain Name Analysis

The domain 'www.metamask-login.vercel.app' uses the application-focused generic top-level domain (.app), featuring subdomain 'www.metamask-login'. The second-level label 'vercel' is 6 characters long with 2 vowels and 4 consonants. Tokenizing the label suggests 2 words: ver, cel. Median word length comes out to three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://www.metamask-login.vercel.app/

Page Load Overview

5.48s
Total Load Time
418 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:85 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking38% confidence
Type: static
Method: ml+structural

All Detected Categories

finance banking
38%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3216.198.79.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
1216.198.79.67Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
164.29.17.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
164.29.17.67Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
64--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T19B01DC52CC40844EA331479BB972A16CC989B90D9AA1BC7078C610D689E0FE1CC26882

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

12:n0n56M8C2Zn8pX8VGuaXiKMccLCnCVe1YTG7faKjwwJWDZa:n056tCPpXoGazCnCVqYC75jL8a

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:724:AAAAAAAAgAAAAAAAgAAAAAQAAAIAIAAAAAAAACAAAAAAAAQAAAAAAAAAEAAIAAAABACDAAAQAAAAAAAAAAAAAAAAAAABAAAI

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0303071f1f0f1f3f
Perceptual Hash:885522558d77237f
Difference Hash:fffffff7f7ffffff
Wavelet Hash:0303071f1f0f1f3f
Color Hash:#761f93

Other Hashes

Crop Resistant:fffffff7f7ffffff

Scan History

Scan history not available

Unable to load historical scan data