vejezo[.]pages[.]dev
“Exodus Pay - A new standard for money | Exodus”
Resumen de las pruebas
PhishDestroy identifies vejezo.pages.dev as a generic phishing domain currently under investigation with an active status. The domain is engineered to mimic legitimate services and lure users into exposing sensitive credentials through deceptive login portals. Due to the generic nature of observed lures and the absence of publicly documented IOCs, this threat remains in flux, warranting heightened caution for anyone encountering the domain.
This domain was flagged via seed 616894 and resolved to IP 172.66.44.124, registered through Cloudflare, Inc. using their Pages platform. The SSL certificate is issued by Let’s Encrypt, enabling encrypted traffic to obscure malicious intent. As of the latest scan, VirusTotal reports 12 out of 95 detections, indicating it remains under the radar of mainstream security engines. No entries appear on major blocklists at this time, and no trust scores are compromised due to the domain’s newness and minimal footprint. Given its recent creation and cloaking behind Cloudflare’s infrastructure, the attack surface is elevated—users interacting with vejezo.pages.dev risk credential harvesting or malware delivery via embedded scripts.
To mitigate exposure, users should immediately block access to vejezo.pages.dev and avoid clicking embedded links or entering credentials on any page hosted there. Administrators are advised to push IOCs (IP 172.66.44.124, domain vejezo.pages.dev, and SSL issuer Let’s Encrypt CN: R3) into network defenses to preempt lateral movement. Cloudflare Pages deployments should be treated with scrutiny; validate all incoming redirects and sandbox unknown *.pages.dev subdomains. Continuous monitoring for newly observed C2 endpoints under this infrastructure is recommended until the investigation concludes.
Data Coverage
Inteligencia de seguridad de red
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Private YARA rules | www.youtube.com/s/player/0980151a/player_embed_es6.vflset/en_us/base.js |
audit | Hunting_JS_WebAssembly |
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 11/08/2026
10 fuentes externas supervisadas Sin coincidencias
Cronología de detección
-
VirusTotal
None → 0
-
VirusTotal
9 → 12
-
Estado del dominio
Accesible → Inaccesible
Tecnologías
5 tecnologías identificadas con alta confianza
Análisis de VirusTotal
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of vejezo.pages.dev · checked Apr 29, 2026
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.