home-exdua-doc[.]pages[.]dev
“Exodus Web 3 Wallet® | Getting Started with Exodus Web”
home-exdua-doc.pages.dev — Não verificado. Representação da marca: Exodus; Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 12/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, ESET); URLScan malicious verdict; PhishDestroy score 93/100. Registrador: Cloudflare.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
PhishDestroy identifies home-exdua-doc.pages.dev as an active crypto-draining phishing domain that masquerades as a legitimate document-sharing portal to trick users into connecting crypto wallets. Once connected, the page silently drains tokens by prompting fake signature requests that authorize unauthorized transactions. Security researchers have observed similar pages using wallet-draining JavaScript loaded from external domains, then transferring assets to mixers or sanctioned addresses. Users may first notice unexpected outgoing transactions or wallet apps freezing during connection attempts. This domain was flagged as malicious after independent testing revealed zero detections out of 95 VirusTotal engines and ties to known infrastructure hosting cryptocurrency theft tools. The page resolves to 188.114.97.3 (Cloudflare IP range) and uses a Google Trust Services certificate to appear authentic. While registration details are obscured via Cloudflare’s privacy proxy, the *.pages.dev hostname indicates deployment on Cloudflare Pages, a common tactic for rapid site turnover by threat actors. If you visited home-exdua-doc.pages.dev, immediately disconnect your wallet, revoke any unauthorized approvals in your wallet’s settings, and run a malware scan. Report the incident to PhishDestroy and your wallet provider with transaction IDs to help trace stolen funds. Use hardware wallets for critical assets and verify every document link through official channels before entering credentials or connecting wallets.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% de confiançaAnálise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of home-exdua-doc.pages.dev · checked Apr 27, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo