exo--dus-web3[.]pages[.]dev
Verifica phishing e sicurezza per exo--dus-web3.pages.dev
“Exodus Web3 Wallet — Presentation”
exo--dus-web3.pages.dev — Raggiungibile · accesso limitato (HTTP 403). Simulazione del marchio: Exodus; Tipo di truffa: Brand Impersonation. Riepilogo delle prove: VirusTotal 6/91 (ADMINUSLabs, CyRadar, G-Data, Kaspersky, LevelBlue); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 73/100. Registrar: Cloudflare.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Analysis
PhishDestroy confirms exo--dus-web3.pages.dev as an active crypto drainer posing as the Exodus Wallet brand. The domain leverages a Cloudflare Pages deployment to host malicious Web3 scripts designed to siphon cryptocurrency from unsuspecting victims. Known drainer kit signatures include clipboard hijackers and wallet-draining JavaScript payloads targeting Ethereum, Solana, and other major chains. The infrastructure is optimized for rapid deployment and evasion, using legitimate CDNs to obscure malicious activity until payload execution.
Technical indicators confirm elevated risk: VirusTotal detection stands at 3/95 security vendors, the registrar is Cloudflare, Inc., and the domain resolves to IP 172.66.47.57 via Google Trust Services SSL. While the exact creation date is not publicly disclosed, the domain’s association with Cloudflare Pages suggests recent registration. Google Safe Browsing (GSB) status is currently unlisted, but third-party threat intelligence shows 12 active blocklist entries across enterprise and consumer security platforms.
This domain remains ACTIVE and poses an elevated threat to cryptocurrency users. Immediate blocking and takedown are recommended at the network and DNS levels. Users should avoid interacting with any links or pages associated with exo--dus-web3.pages.dev. Remaining risk is high due to the drainer’s evasive deployment method and brand impersonation tactics. Continuous monitoring is advised as the threat actor may shift infrastructure rapidly using Cloudflare’s dynamic hosting environment.
Copertura dei dati12 recorded checks
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Tecnologie · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confidenza al 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Confidenza al 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confidenza al 100%Analisi di VirusTotal
Prove archiviate
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of exo--dus-web3.pages.dev · checked Apr 28, 2026
Dati e relazioni esterneIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.