exiodhun[.]gitbook[.]io
“Exodus Login | realm | us”
Resumo das evidências
The domain exiodhun.gitbook.io has been identified as engaging in brand impersonation, specifically targeting Exodus, a cryptocurrency wallet provider. This domain is currently offline, though prior activity involved credential theft attempts through a fraudulent login interface mimicking the legitimate Exodus platform. The threat type is classified as brand impersonation with a focus on harvesting user credentials for unauthorized access to crypto assets. Analysis of the domain reveals it was flagged by 19 of 95 security vendors on VirusTotal, indicating a moderate to high level of detection. The domain was registered through Cloudflare, Inc., and resolves to the IP address 104.18.40.47, located in Canada under Cloudflare’s infrastructure. The SSL certificate is issued by Google Trust Services (WE1), a common provider for both legitimate and malicious domains. The domain was created on March 30, 2026, though this date may reflect spoofed registration metadata. It appears on one security blocklist, and the page title, 'Exodus Login | realm | us,' further confirms its intent to deceive users into believing they are accessing the official Exodus login portal. Given the current offline status of the domain, immediate risk to users is reduced. However, the infrastructure and tactics employed suggest a persistent threat. Organizations and individuals are advised to block the domain and associated IP address (104.18.40.47) at the network level. Users who may have interacted with this domain should immediately reset their Exodus credentials and enable multi-factor authentication on all crypto-related accounts. Monitoring for unauthorized transactions and reviewing connected devices for signs of compromise is strongly recommended. Security teams should treat any future domains with similar naming conventions or infrastructure as high-risk and investigate accordingly.
Data Coverage
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | exiodhun.gitbook.io |
phishing | Phishing Block |
| DigiCert UltraDNS | exiodhun.gitbook.io |
malicious | Sinkholed |
| Cloudflare DNS | exiodhun.gitbook.io |
malicious | Sinkholed |
| DNS4EU | exiodhun.gitbook.io |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 11/08/2026
10 fontes externas monitoradas Sem correspondência
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of exiodhun.gitbook.io · checked Mar 30, 2026
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo