live-ledges-app[.]pages[.]dev
“Suspected phishing site | Cloudflare”
Gespeicherte Beobachtung
Beobachteter Titelkontrast
Zusammenfassung der Beweislage
live-ledges-app.pages.dev was registered on February 21 2026 through Cloudflare, Inc. and resolves to the Cloudflare edge address 172.66.44.104, located in the United States under ASN 13335. The site presents a Cloudflare‑issued SSL certificate issued by Google Trust Services (WE1) and enforces HSTS, indicating a fully TLS‑enabled deployment. An HTTP request returns a 403 status code and the page title “Suspected phishing site | Cloudflare”, which is a default block page displayed when Cloudflare has taken the site offline. Security‑reputation services assign extremely low trust scores: Gridinsoft rates the domain 0/100, Scamadviser 1/100, and PhishDestroy lists it as blocked.
VirusTotal has recorded 11 of 93 scanners flagging the domain, and it appears on at least one external blocklist. The identified scam type is credential phishing, though the specific target brand or credential collection method has not been disclosed. The combination of recent registration, Cloudflare‑only hosting, low trust scores, multiple vendor detections, and the presence of a Cloudflare block page provides strong evidence that the domain was used for credential‑phishing attempts and has since been taken offline. Uncertainty remains regarding the exact phishing campaign infrastructure, such as whether additional subdomains or related C2 hosts were employed, because no further page content or URL paths have been observed.
Analysts should continue to monitor the IP address 172.66.44.104 for any re‑use, add the domain to internal deny lists, and incorporate its hash of the SSL certificate into TLS inspection rules. Correlating logs for outbound connections to Cloudflare edge nodes from this IP may reveal residual activity. Defensive teams are advised to update web‑filtering and email‑security policies to block any future resolution of live‑ledges‑app.pages.dev and to share this indicator of compromise with threat‑intel sharing platforms.
Data Coverage
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 überwachte externe Feeds · gespeicherter Stand 11.08.2026
Erkennungszeitleiste
-
Cloudflare Radar
Cloudflare-Radar-Scan gespeichert · Scan öffnen
-
Domainstatus
Erreichbar → Nicht erreichbar
-
Cloudflare Radar
Cloudflare-Radar-Scan gespeichert · Scan öffnen
Technologien
3 Technologien mit hoher Konfidenz erkannt
VirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of live-ledges-app.pages.dev · checked Apr 13, 2026
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt