exoduswallet[.]versoly[.]page
“Exodus Wallet: Open an Exodus Wallet- Download Exodus Wallet”
exoduswallet.versoly.page — Неперевірений. Уособлення бренду: Exodus; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 6/91 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CRDF, Gridinsoft); URLQuery 100 det.; URLScan malicious verdict; PhishDestroy score 95/100. Реєстратор: Porkbun.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain exoduswallet.versoly.page has been assessed as having an elevated risk level due to its involvement in brand impersonation. The domain impersonates the well-known cryptocurrency wallet service, Exodus, potentially misleading users into sharing sensitive information or downloading malicious software.
Infrastructure analysis reveals that exoduswallet.versoly.page was registered through Porkbun LLC on April 26, 2020. The domain currently resolves to the IP address 54.235.20.80 and uses Nginx as its web server, with Cloudflare and cdnjs providing additional services. The domain is secured by a Let's Encrypt SSL certificate, which may lend a false sense of security to users. According to VirusTotal, 7 out of 95 security vendors flag this domain as malicious. Additionally, the domain appears on one security blocklist and has a Gridinsoft trust score of 0/100, indicating a complete lack of trustworthiness. The page title, 'Exodus Wallet: Open an Exodus Wallet- Download Exodus Wallet,' further reinforces the impersonation of the Exodus brand.
To mitigate the risk associated with brand impersonation, users are advised to verify the domain's authenticity by cross-referencing it with official Exodus communication channels. Security teams should update their blocklists to include exoduswallet.versoly.page and monitor for similar domains that may be used in future campaigns. Additionally, implementing DNS-based security solutions and educating users about the importance of verifying SSL certificates and page content can help prevent accidental engagement with this malicious domain.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: versoly.page
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain versoly.page behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 3 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comАналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога