Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@instra.com.
The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
exodas[.]gb[.]net
“Exodus Wallet - Secure Crypto Wallet 350+ Coins”
exodas.gb.net — 未验证. 品牌冒充:Exodus; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 11/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 83/100. 注册商: Instra.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain exodas.gb.net is a confirmed phishing site engaged in brand impersonation targeting Exodus, a cryptocurrency wallet provider. It poses as the legitimate Exodus platform to deceive users into disclosing sensitive information or transferring cryptocurrency under false pretenses. This site is classified as a cryptocurrency scam and is currently taken offline, though it previously operated without detection by major antivirus engines.
Exodas.gb.net was registered through Instra Corporation Pty Ltd. on February 26, 2026, and resolved to the IP address 172.67.220.164, hosted on Cloudflare's infrastructure in the US. At the time of analysis, 0 of 95 VirusTotal vendors flagged the domain, and Google Safe Browsing did not list it. However, it appeared on 3 security blocklists, including PhishDestroy, MetaMask, and SEAL. The site lacked an SSL certificate, and its observed page title was 'Exodus Wallet - Secure Crypto Wallet 350+ Coins'. Nameservers included betty.ns.cloudflare.com and ian.ns.cloudflare.com, with no valid MX records present.
Users who interacted with exodas.gb.net should immediately revoke any token approvals granted to unknown contracts and transfer remaining funds to a new, secure wallet. Enable two-factor authentication on all cryptocurrency accounts and monitor for unauthorized transactions. Report the domain to Exodus support, local cybercrime authorities, and platforms like Google Safe Browsing or PhishTank to aid in broader mitigation efforts.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
PD-20260226-4243B4 Recipient: abuse@instra.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。