meta-auth-io.tem3[.]io
Category: Phishing And Fraud
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCRisk.com may earn a referral commission when users sign up through this link.
Description of meta-auth-io.tem3[.]io
The domain meta-auth-io.tem3[.]io appears to be a subdomain hosted on the Tem3 website-building platform rather than a standalone primary brand domain. Based on the page title and visible content, it presents itself as a MetaMask-related login or instructional page focused on wallet access, account recovery, and crypto-asset management. The screenshot shows a simple landing-page layout with repeated MetaMask-themed text and visible Tem3 platform branding, suggesting it may have been created using a generic landing-page builder.
The site appears to target users interested in cryptocurrency wallets and blockchain access. However, the domain structure does not appear to match MetaMask's official web presence, and the content shown looks more like a promotional or cloned informational page than an official product portal. Available classification data also places it in phishing/fraud-related categories, which is relevant given the site's wallet-login theme.
The operator is not clearly identified on the page. Based on the visible branding and linked infrastructure, the page may be operated by an unknown third party using Tem3/Teko-related hosting and content-delivery resources rather than by the wallet provider referenced in the page text.
Safety Assessment for meta-auth-io.tem3[.]io
This website shows multiple risk indicators at the time of this scan. It was flagged by 13 out of 91 security engines, categorized by multiple web-classification providers as phishing or fraud-related, and listed in blacklist data associated with social-engineering activity. A malware scan also reported malicious findings, including one flagged file and flagged references to the domain itself and an external ingestion endpoint.
There is also a strong look-alike concern. The domain closely resembles temu.com while the page content references MetaMask login, which creates an unusual and potentially deceptive combination of branding signals. In addition, the page uses a subdomain on a site-building platform instead of an official-looking primary domain for a cryptocurrency wallet service, which may increase the risk of impersonation or credential harvesting.
The presence of valid HTTPS does not reduce these content-level concerns, since phishing pages commonly use encryption as well. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site is served through Cloudflare infrastructure with a valid TLS certificate issued by Google Trust Services and an observed server IP in the 188.114.97.0 range. Nameservers are set to Cloudflare, and the domain is using an unsigned DNSSEC configuration. The domain is relatively new in reputation terms, has no Tranco ranking, and the scan notes no MX records, which can sometimes be consistent with disposable or campaign-style web deployments.
From a hosting perspective, the page appears to rely on Tem3/Teko-related CDN and builder assets, along with common third-party libraries and fonts. Security concerns at the time of this scan include blacklist listings, phishing-oriented categorization, flagged self-referential links, and a suspicious external endpoint referenced during the malware scan. These indicators suggest the infrastructure may have been used for deceptive landing-page delivery rather than a well-established production service.
Share your experience with this website. Was it safe? Did you encounter any issues?