weblearn[.]ghost[.]io
“Getting started | Exodus Knowledge Base”
साक्ष्य सारांश
Analysis of weblearn.ghost.io shows a high‑risk wallet/seed phishing campaign that impersonates the brand “base”. The domain resolves to 151.101.3.7, an IP owned by Fastly, Inc. (AS54113) located in the United States, and is fronted by Varnish, Nginx and OpenResty. It serves an HTTP 301 redirect and presents a TLS certificate issued by Let’s Encrypt (R12). The registrar listed is 1API GmbH, and the domain was created on 01 Oct 2011.
Reputation data is poor: Gridinsoft assigns a trust score of 0 / 100, the site appears on one security blocklist, and PhishDestroy has already blocked it. Ten of ninety‑three VirusTotal scanners flag the domain, indicating moderate detection consensus. The page title “Getting started | Exodus Knowledge Base” is the only visible content; no further page analysis is available.
Defenders should immediately add weblearn.ghost.io to URL filtering and DNS blocklists, monitor connections to its Fastly edge IP, and enforce strict outbound traffic controls to prevent seed leakage. Security teams should also educate users about unsolicited requests for wallet seeds, especially those masquerading as “base” support resources, and verify any legitimate Exodus documentation against known official domains. Continuous threat‑intel feeds should be consulted for updates, and any observed traffic to this domain should be logged for incident response.
Data Coverage
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
पहचान समयरेखा
-
VirusTotal
10 → 9
-
VirusTotal
9 → 10
तकनीकें
3 उच्च-विश्वसनीयता वाली तकनीकें पहचानी गईं
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of weblearn.ghost.io · checked Mar 6, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।