enus-exodsu[.]wixstudio[.]com
“404 Error: Page Not Found | Wix Studio”
enus-exodsu.wixstudio.com — İçerik kullanılamıyor. Marka kimliğine bürünme: Exodus; Dolandırıcılık türü: Credential Phishing. Kanıt özeti: VirusTotal 4/91 (alphaMountain.ai, Cluster25, CRDF, Gridinsoft); URLScan malicious verdict; PhishDestroy score 65/100. Kayıt kuruluşu: GoDaddy.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
PhishDestroy identifies enus-exodsu.wixstudio.com as a live phishing lure that masquerades as a legitimate login interface to trick users into surrendering sensitive credentials. This generic phishing page, detected under seed 73881c, is currently active and remains undetected by VirusTotal engines, showing 4 out of 95 detections. The domain resolves to the IP address 34.144.206.118, which hosts the landing page served via a Let’s Encrypt SSL certificate, indicating the operators are leveraging free certificates to boost perceived legitimacy and potentially evade inspection. While historical WHOIS records list Wix.com as the hosting platform, there are no confirmed blocklist entries or trust-score penalties at this time, underscoring the value of proactive domain blocking before detection engines catch up. Domain-specific telemetry confirms the page is operational and designed to harvest usernames and passwords under false pretenses, with no legitimate business purpose apparent from open-source intelligence. The current risk level is rated under_investigation, reflecting ongoing monitoring rather than dismissal; phishing lures frequently migrate across IP blocks and hostnames to avoid takedowns, so the absence of detections cannot be interpreted as safety. Users or organizations encountering this domain on internal logs, proxies, or endpoints should flag it immediately for further sandbox analysis and incident response. Mitigation against this domain centers on credential-harvesting prevention and reducing exposure to the infrastructure. Disable write access to browser credential stores on managed endpoints, enforce multi-factor authentication on all external portals, and configure email gateways to quarantine messages containing links to the domain. At the network layer, block both the hostname enus-exodsu.wixstudio.com and the resolved IP 34.144.206.118 via DNS sinkholing and firewall rules; rotate any credentials that may have been exposed via this campaign. Lastly, extract indicators from proxy logs for IOC enrichment and share with threat-intelligence platforms to accelerate detection rollout across the community.
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
ICANN OVERSIGHT
Registration: wixstudio.com
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler · 5 identified
Wix provides cloud-based web development services, allowing users to create HTML5 websites and mobile sites.
www.wix.com %100 güvenReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org %100 güvenCloud CDN uses Google's global edge network to serve content closer to users.
cloud.google.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of enus-exodsu.wixstudio.com · checked Apr 26, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin