MALICIOUS — CRITICAL
Phishing- und Sicherheitsprüfung für l.ead.me
l[.]
Analysis of the domain l.ead.me indicates that it is currently active and classified as a high‑risk generic phishing site.
- VirusTotal
- 3/91
- Blocklists
- No stored match
- Verfügbarkeit
- Letzter bekanntermaßen aktiv · HTTP 302
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
l.ead.me — Letzter bekanntermaßen aktiv (HTTP 302). Zusammenfassung der Beweislage: VirusTotal 3/91 (Criminal IP, Chong Lua Dao, Gridinsoft); PhishDestroy score 71/100.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
Evidence Analysis
Analysis of the domain l.ead.me indicates that it is currently active and classified as a high‑risk generic phishing site. The domain is listed on a single security blocklist and is actively blocked by the PhishDestroy service, demonstrating that at least one reputable anti‑phishing platform has catalogued it. VirusTotal reports that three of ninety‑one scanning engines have flagged the domain, providing additional confirmation of malicious intent.
An HTTP request to the domain returns a 302 status code, which is commonly used to redirect victims to a secondary landing page for credential harvesting. No further infrastructure details such as registrar, hosting IP address, autonomous system number, or SSL certificate information are present in the available intelligence, and the page title or targeted brand have not been disclosed. Consequently, the exact phishing campaign tactics and victim lure remain undefined.
Defenders should add l.ead.me to deny‑list rules across DNS resolvers, firewalls, and proxy devices, and monitor for any outbound connections or DNS queries to the domain. Continuous re‑evaluation is advised, as additional indicators such as hosting details or page content may emerge in future scans. Given the high risk rating and the active blocklist status, immediate preventive controls are recommended to mitigate exposure.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Datenabdeckung13 recorded checks
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Domain-Intelligenz
Technische DetailsDNS, SSL-SANs, Zeitstempel
Technologien · 10 identified
Ruby on Rails is a server-side web application framework written in Ruby under the MIT License.
rubyonrails.org 50% confidenceEnvoy is an open-source edge and service proxy, designed for cloud-native applications.
www.envoyproxy.io 100 % KonfidenzZendesk is a cloud-based help desk management solution offering customizable tools to build customer service portal, knowledge base and online communities.
zendesk.com 100 % KonfidenzOneTrust is a cloud-based data privacy management compliance platform.
www.onetrust.com 100 % KonfidenzjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100 % KonfidenzHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100 % KonfidenzGoogle Analytics is a free web analytics service that tracks and reports website traffic.
google.com 100 % KonfidenzCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100 % KonfidenzAda is an automated customer experience company that provides chat bots used in customer support.
www.ada.cx 100 % KonfidenzVirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of l.ead.me · checked Jul 26, 2026
Analyse der Website-Konfiguration
Nachweise und externe BerichteIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.