official--exo-us[.]pages[.]dev
“Suspected phishing site | Cloudflare”
已存储的观测记录
观测到的标题差异
证据摘要
The domain official--exo-us.pages.dev was created on 2026-02-21 and is currently taken offline, returning an HTTP 403 status with the page title "Suspected phishing site | Cloudflare." Infrastructure analysis shows the domain resolves to 172.66.47.164, an IP owned by AS13335 Cloudflare, Inc. and located in the United States. The site is served behind Cloudflare, uses a Google Trust Services (WE1) TLS certificate, and enforces HSTS while supporting HTTP/3. Registration was performed through Cloudflare, Inc., and the domain relies on Cloudflare nameservers suzanne.ns.cloudflare.com and luke.ns.cloudflare.com. Threat intelligence indicates the site is classified as a brand impersonation campaign targeting the Exodus brand.
It appears on a single security blocklist and is actively blocked by PhishDestroy. VirusTotal analysis records detections from 10 of 93 security vendors, reinforcing a malicious assessment. Additionally, Gridinsoft assigns a trust score of 0 out of 100, the lowest possible rating.
While the exact content of the page has not been publicly disclosed, the combination of a phishing‑related page title, multiple vendor detections, and a zero trust score suggests the domain was used to lure victims under the guise of Exodus. Defenders should add official--exo-us.pages.dev to network and endpoint blocklists, monitor for any re‑registration or similar subdomains using the "official--exo-us" pattern, and enforce strict outbound filtering for Cloudflare‑hosted domains that lack a legitimate business justification. Continuous monitoring of Cloudflare‑registered domains for rapid creation dates and low trust scores can help pre‑empt future impersonation attempts.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
检测时间线
取证情报
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of official--exo-us.pages.dev · checked Apr 13, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控