public-metamask-x-login.tem3[.]io
Category: Phishing And Fraud
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCRisk.com may earn a referral commission when users sign up through this link.
Description of public-metamask-x-login.tem3[.]io
The domain public-metamask-x-login.tem3[.]io appears to be a landing page hosted on the tem3.io website-building platform. Based on the domain string, page title, and screenshot, it presents MetaMask-branded content and references wallet setup, adding networks, and funding a crypto wallet. The visible page also includes platform branding such as “Site built on Temp3,” which suggests the content may have been created through a third-party landing-page builder rather than an official MetaMask property.
The naming pattern combines “public,” “metamask,” and “login,” which may indicate an attempt to attract users looking for MetaMask access or support information. The screenshot shows prominent MetaMask branding and an “Install MetaMask” message, while the metadata describes wallet guidance. Based on available data, this appears to be a cryptocurrency-themed page that may be leveraging a well-known wallet brand for traffic or credential-harvesting purposes rather than operating as an independently established service.
Safety Assessment for public-metamask-x-login.tem3[.]io
Multiple indicators suggest elevated risk at the time of this scan. The site was categorized by multiple web-classification providers as phishing or fraud-related, and 17 out of 91 security engines flagged the URL. Malware scanning also indicated malicious findings, with one scanned file flagged and several related links and referenced domains marked as suspicious. In addition, the domain appears on blacklist data associated with social-engineering or suspicious-object classifications.
There is also a notable branding concern: the page prominently references MetaMask, yet the domain is not an obvious official MetaMask domain. Separately, the hostname closely resembles temu.com in structure according to the supplied similarity check, which may indicate look-alike naming behavior even though the page content itself is crypto-themed. Combined with the “metamask-x-login” wording, this raises the possibility that the site may be attempting to imitate trusted brands or capture users searching for account access.
The domain has no Tranco ranking, carries a trust score of 0/100 in the provided scan context, and uses a generic landing-page platform rather than a clearly attributable official brand domain. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site is served through Cloudflare infrastructure and resolves to an IP associated with Cloudflare in Toronto, Canada. It uses a valid TLS certificate issued by Google Trust Services, with expiry shown as 2026-06-13. The domain uses Cloudflare nameservers, while DNSSEC appears to be unsigned at the time of this scan.
From a security perspective, the presence of HTTPS should not be treated as a trust signal on its own. The scan data indicates flagged outbound references, including a telemetry or ingestion endpoint, and malicious classifications tied to the page URL and linked resources. The combination of CDN-hosted assets, a landing-page builder environment, blacklist appearances, and phishing-related detections may indicate a disposable or campaign-style setup.
Share your experience with this website. Was it safe? Did you encounter any issues?