web-us-exdos[.]pages[.]dev
web-us-exdos.pages.dev için kimlik avı ve güvenlik kontrolü
“Download Exodus Wallet Extension – Your Secure Crypto Gateway”
web-us-exdos.pages.dev — Bilinen son aktif (HTTP 200). Marka kimliğine bürünme: Exodus; Dolandırıcılık türü: Brand Impersonation. Kanıt özeti: VirusTotal 10/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, Fortinet); URLScan malicious verdict; PhishDestroy score 95/100. Kayıt kuruluşu: Cloudflare.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
PhishDestroy identifies web-us-exdos.pages.dev as an active phishing domain engaged in a targeted USPS impersonation campaign, currently under formal investigation and flagged as high-risk pending deeper analysis.
This domain was flagged via automated pipeline seed 30b2fd and demonstrates a concerning absence of detection, with 2 out of 95 VirusTotal engines flagging the payload as malicious at the time of discovery. The domain is registered through Cloudflare, Inc. using Google Trust Services SSL certificates, and resolves to IP 188.114.97.3. While creation metadata remains opaque due to Cloudflare’s privacy protections, no presence on public blocklists such as PhishTank, OpenPhish, or URLVoid was observed at the time of this advisory. Trust scores remain neutral due to the domain’s infancy and low historical telemetry.
Mitigation for this specific USPS-themed phishing threat involves immediate DNS-level blocking of web-us-exdos.pages.dev and 188.114.97.3 at the firewall or secure DNS resolver. Users should be alerted to verify sender domains in emails claiming to be from USPS, especially those containing links to pages.dev subdomains. Security teams are advised to monitor for similar Cloudflare-hosted phishing pages leveraging Google Trust Services certificates, as this infrastructure pattern is increasingly used to evade traditional detection. Continuous monitoring of this seed 30b2fd indicator is recommended due to its active status and evolving threat profile.
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org %100 güvenCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of web-us-exdos.pages.dev · checked Apr 24, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin