exaudiaslogin[.]gitbook[.]io
“Exodus®* Login : A Comprehensive Solution | us”
ملخص الأدلة
Analysis indicates that exaudiaslogin.gitbook.io is an active credential-phishing domain flagged by multiple security vendors as of August 2026. The domain, registered on March 30, 2014, is hosted on Cloudflare infrastructure, resolving to IP address 172.64.147.209 with nameservers dahlia.ns.cloudflare.com and hugh.ns.cloudflare.com. It appears on three security blocklists and is explicitly blocked by PhishDestroy, MetaMask, and SEAL, suggesting targeted credential-harvesting activity. VirusTotal reports that 3 out of 91 security vendors detect this domain as malicious, though the exact nature of the phishing content remains unconfirmed due to limited page-level analysis.
Infrastructure analysis reveals the domain leverages Cloudflare’s services, a common tactic to obscure hosting origins and evade takedowns. The long registration period (over a decade) does not mitigate risk, as phishing domains frequently exploit aged registrations to appear legitimate. No SSL certificate anomalies or HTTP status errors are reported, but this is consistent with modern phishing campaigns that prioritize operational uptime. The absence of additional context—such as the targeted brand, phishing kit, or specific lures—limits attribution, though the domain’s inclusion in MetaMask’s blocklist implies potential cryptocurrency-related credential theft.
Defenders should treat this domain as high-risk. Immediate actions include blocking the domain and its resolving IP at the network perimeter, updating endpoint protection rules, and monitoring for credential submissions or redirects to exaudiaslogin.gitbook.io. If this domain is linked to internal user reports, incident response teams should prioritize password resets for affected accounts and review logs for unauthorized access attempts. Given its active status and blocklist presence, further investigation into associated infrastructure (e.g., linked domains, hosting patterns) is recommended to identify broader campaign activity.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
المخطط الزمني للاكتشاف
-
أول تسجيل
أول قيمة محفوظة: يمكن الوصول إليه
التقنيات
حُدّدت ٧ تقنيات عالية الثقة
تحليل VirusTotal
الأدلة المؤرشفة
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of exaudiaslogin.gitbook.io · checked Aug 4, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب