backup-exoduscentre[.]vercel[.]app
“Exodus Portfolio - Update Wallet”
Stored detection
Cloaking alert
- Cloaking type
content_split- Cloaking score
- 1/6
Evidence Summary
The domain backup-exoduscentre.vercel.app is assessed as a high-risk threat, specifically categorized as brand impersonation. The domain impersonates the well-known cryptocurrency wallet service Exodus, posing a significant risk to users who may be tricked into providing sensitive information or credentials.
Analysis of the domain reveals that it is registered through Vercel and resolves to the IP address 64.29.17.131, located in the United States. The domain was created on May 06, 2026, and is currently active. According to VirusTotal, 16 out of 95 security vendors flag this domain as malicious, indicating a moderate level of detection. The domain appears on one security blocklist, further corroborating its malicious nature. The SSL certificate is issued by Google Trust Services, which may lend a false sense of security to unsuspecting users. Google Safe Browsing also flags the domain as a phishing site, adding to the comprehensive evidence of its malicious intent.
To mitigate the risks associated with this brand impersonation threat, users are advised to verify the URL of any Exodus-related pages before entering sensitive information. Security teams should add this domain to their blocklists and monitor for any similar patterns of domain registration or IP usage. Additionally, implementing multi-factor authentication (MFA) for Exodus accounts can significantly reduce the likelihood of unauthorized access even if credentials are compromised. Regular security awareness training for users can help them recognize and report such impersonation attempts, thereby enhancing overall security posture.
Data Coverage
Threat Response Pipeline
Blocklist coverage
10 monitored external feeds · stored snapshot Aug 13, 2026
10 monitored external feeds No match
Domain Intelligence
Technical detailsDNS, TLS names and timestamps
VirusTotal Analysis
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive