# en-exdosweb-usa.pages.dev — SUSPICIOUS > en-exdosweb-usa.pages.dev shows signs of phishing activity. Avoid sharing personal info and report suspicious emails referencing this domain. ## Summary PhishDestroy identifies en-exdosweb-usa.pages.dev as an active phishing domain with a low risk level. The domain has been flagged for generic phishing activity, which typically involves attempts to deceive users into revealing sensitive information. While the threat is currently assessed as low, users should remain cautious when interacting with content linked to this domain. The domain resolves to the IP address 172.66.44.120 and is registered through Cloudflare, Inc. Hosting under Cloudflare's infrastructure is common for both legitimate and malicious sites due to its ease of setup and content delivery network services. VirusTotal analysis indicates only 2 out of 95 security vendors detect suspicious activity related to this domain, suggesting limited but notable concern. The page title "Suspected phishing site | Cloudflare" further reinforces the suspicion of malicious intent. Currently, en-exdosweb-usa.pages.dev remains active and should be treated with caution. Users are advised not to enter personal or financial information on this site and to report any phishing attempts linked to this domain to relevant authorities. Organizations should consider blocking or monitoring this domain within their security controls to mitigate potential risks associated with this phishing campaign. ## Threat Details - Verdict: SUSPICIOUS - Site status: dead (HTTP 403) - Page title: Suspected phishing site | Cloudflare ## Domain Intelligence - Registered: 2026-03-09 13:07:02 - Registrar: Cloudflare, Inc. - Country: US - IP: 172.66.44.120 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - Nameservers: edna.ns.cloudflare.com kolton.ns.cloudflare.com - SSL Issuer: Google Trust Services / WE1 ## Detection Status - VirusTotal: 2 vendors flagged Vendors: ["ChainPatrol", "alphaMountain.ai"] - Google Safe Browsing: clean - Blocklists: 2 hits Lists: ["PhishDestroy", "MetaMask"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019cd26a-becf-7225-ad5b-c11ba8fc18c5.png - Cloudflare Radar: https://radar.cloudflare.com/scan/d6953a09-3bac-4db6-9d6e-e054f6e77f83 - PhishDestroy: https://phishdestroy.io/domain/en-exdosweb-usa.pages.dev/ - LLM endpoint: https://phishdestroy.io/domain/en-exdosweb-usa.pages.dev/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/en-exdosweb-usa.pages.dev/ Last updated: 2026-03-19