us--exxodus-web[.]pages[.]dev
“Suspected phishing site | Cloudflare”
Kaydedilmiş gözlem
Gözlemlenen başlık farkı
Kanıt özeti
The domain us--exxodus-web.pages.dev was observed hosting a page whose title reads "Suspected phishing site | Cloudflare". The site resolved to the IP address 172.66.47.156, which is owned by Cloudflare, Inc. (AS13335) and is geolocated to the United States. Cloudflare’s DNS records show the authoritative nameservers lia.ns.cloudflare.com and ram.ns.cloudflare.com, confirming that the domain is fully provisioned through Cloudflare’s platform. Technical fingerprints indicate the presence of HTTP/3 and enforced HTTP Strict Transport Security (HSTS), both standard Cloudflare features. Security telemetry flags the domain as high‑risk.
The Gridinsoft trust score is 0 out of 100, indicating a lack of trust. Fifteen of ninety‑four VirusTotal scanners have flagged the domain, and the site appears on three independent blocklists, including PhishDestroy, MetaMask, and SEAL. The HTTP response returned a 403 status code before the site was taken offline, suggesting that access was blocked or the content was removed. The current status is listed as offline, and the domain is no longer reachable. Evidence does not reveal the specific phishing kit or targeted brand beyond the generic page title.
No additional intelligence such as OTX identifiers, Safe Browsing alerts, or detailed payload analysis is available. Consequently, the precise lure or victim profile remains uncertain. Defenders should continue to block the domain at network perimeter and DNS layers, monitor for any re‑registration or new sub‑domains under the same parent zone, and update endpoint protection signatures to include the observed VirusTotal detections. Given the Cloudflare hosting, any future re‑hosting is likely to retain the same IP range, so IP‑based allow‑list rules should be reviewed. Continuous observation of the domain’s registration status is recommended, as the registrar information shows the domain was registered through Cloudflare, Inc., which may facilitate rapid redeployment.
Data Coverage
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | us--exxodus-web.pages.dev |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
Teknolojiler
3 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of us--exxodus-web.pages.dev · checked Mar 16, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin