claimmetaairdrop.pages.dev
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of claimmetaairdrop.pages.dev
This website appears to present itself as a MetaMask-related cryptocurrency dashboard or wallet-recovery page. The page layout, branding cues, and calls to action such as "Connect MetaMask" suggest it is designed to prompt visitors to connect a crypto wallet, likely under the pretense of account recovery, portfolio access, or security-related actions.
Based on the domain name, the site may be attempting to capitalize on interest in crypto airdrops and MetaMask users. It is hosted on a pages.dev subdomain rather than an official MetaMask-owned domain, while also referencing metamask.io resources. That combination may indicate an unofficial page that imitates a known cryptocurrency wallet brand rather than an independently branded service.
Safety Assessment for claimmetaairdrop.pages.dev
The scan results indicate elevated risk at the time of this scan. The domain was flagged by 16 out of 91 security engines, with many of those detections describing the page as phishing or otherwise malicious. In addition, a malware scan marked one JavaScript file as malicious, which may suggest potentially harmful client-side behavior. The screenshot also shows branding and interface elements that closely resemble MetaMask, while the actual domain is claimmetaairdrop.pages.dev rather than an official MetaMask domain, which may indicate a look-alike page intended to capture wallet interactions.
Blacklist and threat-database checks were mixed rather than uniformly negative: major content-malice databases listed in the scan were clean at the time of review, and no DNS-based blocklist hits were reported. However, those clean entries do not outweigh the relatively broad multi-engine phishing consensus and the apparent brand imitation visible on the page. The very low trust score provided with the scan is also consistent with a high-risk assessment.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site is hosted on Cloudflare infrastructure using the pages.dev platform, with the resolved IP address located in Canada at the time of this scan. It presented a valid TLS certificate issued by Google Trust Services, which indicates that the connection was encrypted in transit, although HTTPS alone does not speak to the legitimacy of the content. The domain is about five years old, registered through Cloudflare, and uses Cloudflare nameservers.
DNSSEC appears to be unsigned, and the web server software was not identified in the provided scan data. A notable technical concern is the flagged JavaScript asset found during malware scanning, especially on a page that asks users to connect a cryptocurrency wallet. In crypto-themed phishing campaigns, malicious scripts may be used to trigger deceptive wallet prompts, harvest credentials, or manipulate transaction requests.
Share your experience with this website. Was it safe? Did you encounter any issues?