Phishing detection: login.2ccloud.com

MetaMask
https://login.2ccloud.com/assets/js/MetaMask.html Access site
Screenshot
Screenshot of login.2ccloud.com
Investigate
Domain login.2ccloud.com3 CT hosts on apex
URL https://login.2ccloud.com/assets/js/MetaMask.html
Phishunt analysis Beta
22 low suspicionheuristic risk score · not a probability
Why?
  • +5.3 Keyword match
  • +4.1 Brand in screenshot
  • +3.9 Password field
  • +3.0 OpenPhish
  • +1.1 ASN reputation
  • +1.1 No CSP header
  • +1.1 No HSTS header
  • +0.6 Brand impersonation in path
  • +0.6 Cross-origin form
  • +0.6 Login text in screenshot
  • +0.3 Free CA
  • +0.3 Long domain
  • +0.2 Suspicious TLD
  • +0.1 External scripts
  • +0.1 Deep subdomain
17 signals fired · detector v3.0.0
AI analysis AIBeta
Credential harvesting

This page impersonates the MetaMask crypto wallet by loading a fake login asset from an unrelated cloud-hosted domain in India, with no CSP or HSTS protections. The naming and structure suggest an attempt to harvest MetaMask wallet credentials.

Brand impersonation in pathShared page assetsOpenPhish
AI-generated from stored detector signals - the AI never visited the site. · 2026-09-26 · confidence 40%
Domain & Network
Whois
Registrar GoDaddy.com, LLC
Network
Country IndiaIndia
ASN AS140641
TLS Cert YR2
External detection OpenPhish
CleanGoogle Safe Browsing · PhishTank · TweetFeed · urlscan.io
Report this phishing
Registrar GoDaddy.com, LLC

Tracked from 2026-09-26 13:05 UTC  ·  Last refreshed 2026-09-27 03:30 UTC