MALICIOUS — CRITICAL
Pemeriksaan phishing dan keamanan exosdeuswebr.pages.dev
exosdeuswebr[.]
This domain presents a high-risk brand impersonation threat targeting Exodus cryptocurrency wallet users.
- VirusTotal
- 9/91
- Blocklists
- No stored match
- Ketersediaan
- Terakhir diketahui aktif · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
exosdeuswebr.pages.dev — Terakhir diketahui aktif (HTTP 200). Peniruan identitas merek: Exodus; Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 9/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, Fortinet); URLScan malicious verdict; PhishDestroy score 92/100. Registrar: Cloudflare.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
This domain presents a high-risk brand impersonation threat targeting Exodus cryptocurrency wallet users. Analysis indicates the site mimics the official Exodus Web3 Wallet interface, using an identical page title 'Exodus Web3 Wallet — Securely Manage, Swap & Explore' to deceive visitors into entering sensitive credentials or transferring digital assets. The fraudulent nature of this domain is reinforced by its attempt to replicate trusted wallet functionality, including secure management, swapping, and exploration features, which are commonly exploited in cryptocurrency phishing schemes. Infrastructure analysis reveals concrete indicators of malicious activity. The domain exosdeuswebr.pages.dev was registered through Cloudflare, Inc. on April 30, 2026, and currently resolves to the IP address 172.66.44.213, located in California under Cloudflare's network. It is flagged by 2 out of 95 security vendors on VirusTotal and appears on one security blocklist, specifically PhishDestroy. The SSL certificate is issued by Google Trust Services (WE1), which, while providing encryption, does not validate the legitimacy of the site's content or intent. Users who have visited exosdeuswebr.pages.dev should take immediate action to mitigate potential risks. Any credentials, recovery phrases, or private keys entered on this site should be considered compromised. Affected individuals must transfer remaining assets to a new, secure wallet and revoke any connected permissions or authorizations linked to the fraudulent domain. Additionally, monitoring for unauthorized transactions and reporting the domain to relevant security platforms can help prevent further exploitation. This domain remains active as of the latest assessment, underscoring the need for heightened vigilance among cryptocurrency users.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Cakupan data12 recorded checks
Intelijen Keamanan Jaringan
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Teknologi · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Keyakinan 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Keyakinan 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Keyakinan 100%Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of exosdeuswebr.pages.dev · checked Apr 30, 2026
Bukti & Laporan EksternalIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.