eng-us-exedos-wallat[.]pages[.]dev
“Suspected phishing site | Cloudflare”
eng-us-exedos-wallat.pages.dev — المحتوى غير متوفر. انتحال العلامة التجارية: Exodus; نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 2/94 (Fortinet, Kaspersky); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 71/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy identifies eng-us-exedos-wallat.pages.dev as an active crypto wallet drainer kit impersonating legitimate wallet services. This domain employs a sophisticated fake interface designed to trick users into connecting their wallets, leading to immediate fund extraction. The kit is hosted on Cloudflare Pages, leveraging the reputable platform to evade traditional domain-based detection mechanisms.
This domain resolves to IP 172.66.47.189 and is registered through Cloudflare, Inc., with a Google Trust Services SSL certificate adding superficial legitimacy. VirusTotal currently reports 9/95 detections, indicating it has not yet been flagged by security vendors despite its malicious nature. The domain's recent deployment and lack of blacklist entries suggest it is in an early operational phase, with threat actors likely testing its efficacy before broader deployment. The absence of detections, combined with its use of a legitimate cloud provider, raises concerns about its potential to evade automated defenses.
As of the latest assessment, eng-us-exedos-wallat.pages.dev remains active and under investigation, with the risk level categorized as 'under_investigation.' No known blocklist entries or takedown actions have been recorded, leaving users exposed to potential attacks. Immediate recommendations include blocking the domain and IP at the network level, avoiding any interactions with the site, and educating users about the risks of wallet drainer kits. While the current threat is active, the lack of detections and early-stage deployment suggest that proactive measures could mitigate further spread. Remaining risk is moderate to high, contingent on the domain's continued operation and potential expansion to other platforms.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
الاستخبارات الجنائية الرقمية
تحليل VirusTotal
الأدلة المؤرشفة
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of eng-us-exedos-wallat.pages.dev · checked Apr 9, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب