host-exodusweb[.]pages[.]dev
Проверка домена host-exodusweb.pages.dev на фишинг и безопасность
“Exodus Web3 Wallet — @Exodus® Browser Extension”
host-exodusweb.pages.dev — Доступен · доступ ограничен (HTTP 403). Олицетворение бренда: Across; Тип мошенничества: Crypto Drainer. Сводка доказательств: VT 10/95 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, CyRadar, Fortinet); URLQuery 0; URLScan malicious; GSB no flag; BL 2 (MetaMask, SEAL); CF Radar malicious; PD 80/100. Регистратор: Cloudflare.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
host-exodusweb.pages.dev is a tenant hostname on Cloudflare, not a separately registered domain. PhishDestroy first observed the hostname on Feb 22, 2026. Stored content metadata identifies Across as the apparent target. The captured page title is “Exodus Web3 Wallet — @Exodus® Browser Extension”. Page analysis recorded additional brand references to Exodus, OpenSea, Trezor, and Uniswap. Stored page analysis classifies the content as crypto drainer. Current evidence score: 80/100 (critical).
Positive findings are stored from 5 sources: VirusTotal, MetaMask, SEAL, Cloudflare Radar, and URLScan. VirusTotal recorded 10 detections among 95 engines: ADMINUSLabs, ChainPatrol, alphaMountain.ai, CyRadar, Fortinet, G-Data, Kaspersky, Lionic, Sophos, Trustwave on Jul 18, 2026 at 18:45 UTC. MetaMask and SEAL listed the hostname in the external-blocklist snapshot on Aug 7, 2026 at 22:20 UTC. Cloudflare Radar classified the hostname as malicious and assigned the categories phishing and security threats; its verdict timestamp was not retained. URLScan returned a malicious verdict with score 100; scan metadata linked the capture to Exodus and assigned phishing as its category on Jul 29, 2026 at 03:23 UTC. Non-positive and contextual checks: URLQuery recorded no positive detection; no observation timestamp was retained. Google Safe Browsing returned no flag on Mar 3, 2026 at 04:14 UTC.
An access-restricted HTTP 403 response was recorded on Aug 7, 2026 at 01:03 UTC. Cloudflare is the hosting platform for this tenant, not its registrar. At collection time, the hostname resolved to 172.66.44.133 on AS13335 (CLOUDFLARENET - Cloudflare, Inc., US). The IP and ASN identify shared Cloudflare infrastructure, not the tenant operator. DOM analysis on Mar 24, 2026 at 01:20 UTC returned 70/100. The evidence archive retains 2 visual captures from PhishDestroy and URLScan. The platform TLS certificate was issued by Google Trust Services / WE1 with validity through May 30, 2026; checked Mar 15, 2026 at 06:00 UTC.
The content indicators and 5 positive source findings support the current Across-themed crypto drainer classification.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of host-exodusweb.pages.dev · checked Mar 25, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание