faqs-download-ldgeer[.]pages[.]dev
“Suspected phishing site | Cloudflare”
faqs-download-ldgeer.pages.dev — المحتوى غير متوفر. انتحال العلامة التجارية: Ledger; نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 5/94 (ADMINUSLabs, Emsisoft, Kaspersky, LevelBlue, Netcraft); URLScan malicious verdict; PhishDestroy score 70/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain, faqs-download-ldgeer.pages.dev, is flagged as a credential theft operation targeting users through deceptive login interfaces. Analysis indicates the site impersonates legitimate services to harvest account credentials, though no specific brand impersonation or crypto drainer kit has been confirmed at this stage. The infrastructure lacks overt ties to known phishing frameworks but exhibits hallmarks of credential-focused attacks, such as cloned authentication prompts and form submission scripts designed to exfiltrate entered data. Infrastructure analysis reveals the following technical indicators: the domain resolves to IP address 172.66.47.115 and was registered on April 05, 2026, through a privacy-protected registrar. The SSL certificate is issued by Google Trust Services, a common feature in both legitimate and malicious sites. VirusTotal reports 0 detections out of 95 engines, suggesting the threat has not yet been widely identified. The domain appears on one security blocklist, and Gridinsoft assigns it a trust score of 0/100. Google Safe Browsing (GSB) status is not explicitly provided but is likely flagged given the Cloudflare-hosted warning page. The domain is currently offline, displaying a Cloudflare interstitial page labeled 'Suspected phishing site.' This suggests the hosting provider or security systems have taken preliminary action to neutralize the threat. However, residual risk remains due to the domain's recent creation and the potential for reactivation under a different configuration. Users who interacted with the site should assume credential exposure and initiate password resets for any accounts entered. Organizations should monitor for similar domains leveraging the same IP range or registrar, as this may indicate a broader campaign.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
الاستخبارات الجنائية الرقمية
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of faqs-download-ldgeer.pages.dev · checked Jun 26, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب