# docexod--us-web.pages.dev — SUSPICIOUS > Explore if the domain docexod--us-web.pages.dev is safe or linked to phishing. Learn about its status and risk to protect your data today. ## Summary PhishDestroy identifies the domain docexod--us-web.pages.dev as a potentially harmful site classified under generic phishing threats. The domain currently shows an active status, signaling ongoing risks to users who may encounter it. This classification is part of broader monitoring efforts to detect deceptive practices aimed at harvesting personal information under false pretenses. Technically, the domain is registered through Cloudflare, Inc., and resolves to the IP address 172.66.47.123. Despite low detection on VirusTotal, where just one out of 95 security vendors flagged this domain, the presence of a suspicious page title "Suspected phishing site | Cloudflare" adds weight to concerns. The domain uses Cloudflare’s infrastructure, which is commonly exploited by threat actors for rapid deployment and masking of phishing attempts, contributing to the caution exercised by analysts. Currently, the domain remains active, and users are advised to exercise caution if they encounter it. PhishDestroy recommends avoiding any interaction with this domain until further investigation can confirm its safety. Continuous monitoring and updates will be provided to inform the public and security professionals about changes in the domain’s risk profile as more intelligence becomes available. ## Threat Details - Verdict: SUSPICIOUS - Site status: dead (HTTP 403) - Page title: Suspected phishing site | Cloudflare ## Domain Intelligence - Registered: 2026-03-09 13:07:02 - Registrar: Cloudflare, Inc. - Country: US - IP: 172.66.47.123 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - Nameservers: gina.ns.cloudflare.com weston.ns.cloudflare.com - SSL Issuer: Google Trust Services / WE1 ## Detection Status - VirusTotal: 1 vendors flagged Vendors: ["Ermes"] - Google Safe Browsing: clean - Blocklists: 2 hits Lists: ["PhishDestroy", "MetaMask"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019cd26b-b0d7-739f-a864-3f996bb78504.png - Cloudflare Radar: https://radar.cloudflare.com/scan/ab9c3352-d303-48e4-beaa-5de15eef801a - PhishDestroy: https://phishdestroy.io/domain/docexod--us-web.pages.dev/ - LLM endpoint: https://phishdestroy.io/domain/docexod--us-web.pages.dev/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/docexod--us-web.pages.dev/ Last updated: 2026-03-19