ledgr-help-ai[.]pages[.]dev
“Suspected phishing site | Cloudflare”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
PhishDestroy identifies ledgr-help-ai.pages.dev as a live AI-themed credential harvesting domain currently weaponizing Google Trust Services SSL certificates to impersonate legitimate login portals. Security telemetry confirms this infrastructure (IP 172.66.44.54) is actively luring victims through spoofed AI assistant interfaces that harvest usernames and passwords under the guise of technical support. The domain operates from Cloudflare’s IP space but maintains no legitimate affiliation with any AI platform, making it a clear vehicle for account takeover attacks. This domain presents a high immediate risk with zero detections across 95 VirusTotal engines despite active abuse. It leverages Google Trust Services certificates for HTTPS encryption, increasing user trust while masking malicious traffic. The website resolves to IP 172.66.44.54 through Cloudflare infrastructure, a common tactic to evade direct takedowns. While creation and domain registration dates are not disclosed, the active presence on pages.dev combined with zero AV coverage indicates a recently deployed threat still in its operational infancy. If you accessed ledgr-help-ai.pages.dev or entered credentials, immediately revoke saved sessions on all accounts, change passwords on other platforms using the same password, and enable multi-factor authentication where possible. Monitor accounts for unusual login attempts or data exfiltration, and report the domain to your IT security team or browser vendors for blocklisting. Do not trust SSL indicators alone—verify domain legitimacy through official channels before submitting sensitive information.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 10/08/2026
الاستخبارات الجنائية الرقمية
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of ledgr-help-ai.pages.dev · checked Apr 3, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب