hub-exo-home-us[.]pages[.]dev
“Exodus Web3 Wallet”
hub-exo-home-us.pages.dev — Contenu indisponible. Usurpation de l'identité de la marque : Discord; Type d'arnaque : Crypto Drainer. Résumé des preuves: VirusTotal 0/93; URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Bureau d’enregistrement: Cloudflare.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain hub-exo-home-us.pages.dev was identified as a phishing site engaged in brand impersonation targeting Discord users. It posed as a legitimate Web3 wallet interface, specifically displaying the page title 'Exodus Web3 Wallet,' to deceive victims into connecting their crypto wallets via a wallet-connect phishing scheme. No drainer kit was confirmed, and the site is currently taken offline, though it previously operated as a wallet-connect phish under the guise of Discord-related services.
Technical analysis of hub-exo-home-us.pages.dev revealed 0 of 95 VirusTotal vendors flagged the domain, and Google Safe Browsing did not list it as malicious. However, it appeared on 3 security blocklists, including PhishDestroy, MetaMask, and SEAL. The domain was registered through Cloudflare, Inc. on February 26, 2026, and resolved to the IP address 188.114.97.3, hosted by Cloudflare in the US. The SSL certificate was issued by Google Trust Services (WE1), and the site employed technologies such as HSTS, Cloudflare, and HTTP/3. At the time of investigation, the domain returned an HTTP 403 status, indicating access was restricted or the site was disabled.
Victims who interacted with hub-exo-home-us.pages.dev should immediately revoke any token approvals granted to the site and transfer funds to a new, secure wallet. If credentials were entered, users should change passwords for associated accounts, enable two-factor authentication, and monitor for unauthorized transactions or account activity. The domain can be reported to Discord’s security team, as well as to anti-phishing platforms like PhishTank or the Anti-Phishing Working Group to aid in broader mitigation efforts.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Technologies · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confiance à 100 %Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Confiance à 100 %HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confiance à 100 %Analyse VirusTotal
Preuves archivées
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of hub-exo-home-us.pages.dev · checked Apr 21, 2026
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif