# eng-exxods-io.pages.dev — MALICIOUS > eng-exxods-io.pages.dev is under investigation for potential phishing. Exercise caution and avoid sharing personal info on this site. ## Summary PhishDestroy identifies eng-exxods-io.pages.dev as a domain suspected of engaging in generic phishing activity. Although no detections have been recorded by prominent security vendors, the domain raises concerns due to its suspicious behavior and the associated Cloudflare warning page. The domain resolves to IP 172.66.44.146 and is registered through Cloudflare, Inc., a common platform for hosting web content, including malicious sites exploiting fast deployment and anonymity. VirusTotal scans reveal zero detections, indicating the domain has not yet been flagged by mainstream antivirus solutions, but the absence of positive hits does not guarantee safety. At present, eng-exxods-io.pages.dev remains active and under investigation. Users should exercise caution by not entering sensitive information or credentials on this site. PhishDestroy recommends monitoring this domain closely, blocking access where possible, and reporting any suspicious activity related to it to improve collective internet safety. ## Threat Details - Verdict: MALICIOUS - Site status: dead (HTTP 403) - Page title: Suspected phishing site | Cloudflare ## Domain Intelligence - Registered: 2026-03-10 19:07:02 - Registrar: Cloudflare, Inc. - Country: US - IP: 172.66.44.146 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - Nameservers: kelly.ns.cloudflare.com tate.ns.cloudflare.com - SSL Issuer: Google Trust Services / WE1 ## Detection Status - VirusTotal: 6 vendors flagged Vendors: ["ADMINUSLabs", "ChainPatrol", "Chong Lua Dao", "CyRadar", "Fortinet", "Phishing Database"] - Google Safe Browsing: clean - Blocklists: 2 hits Lists: ["PhishDestroy", "MetaMask"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019cd915-223e-7219-9fc0-d95afa89c169.png - Cloudflare Radar: https://radar.cloudflare.com/scan/69fbb752-f83f-4d02-aeeb-993843eca46e - PhishDestroy: https://phishdestroy.io/domain/eng-exxods-io.pages.dev/ - LLM endpoint: https://phishdestroy.io/domain/eng-exxods-io.pages.dev/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/eng-exxods-io.pages.dev/ Last updated: 2026-03-19