leveredge-claim[.]pages[.]dev
“Suspected phishing site | Cloudflare”
Observation enregistrée
Contraste de titres observé
Résumé des preuves
leveredge-claim.pages.dev was observed pointing to the Cloudflare edge address 172.66.44.178, which belongs to ASN 13335 owned by Cloudflare, Inc. The domain was created on 21 February 2026 and is registered through Cloudflare, Inc., using the authoritative name servers sierra.ns.cloudflare.com and valentin.ns.cloudflare.com. The TLS certificate presented is issued by Google Trust Services under the WE1 label, and the site advertises HSTS and HTTP/3 support. An HTTP request returns a 403 status code and the page title is “Suspected phishing site | Cloudflare”, indicating that Cloudflare has taken the site down. VirusTotal records show that 2 of 95 scanned security vendors flagged the domain, and the domain appears on five independent blocklists, including PhishDestroy, ScamSniffer, Polkadot, Enkrypt and Codeesura.
Gridinsoft assigns a trust score of 0 / 100, and the overall risk rating is elevated. The intelligence classifies the activity as a crypto‑drainer scam. No additional payload, landing page content, or target cryptocurrency address has been disclosed, leaving the exact mechanism of the drain unknown. The presence of HSTS suggests the site attempted to enforce secure transport, but the 403 response indicates that the content is no longer reachable.
The low detection count on VirusTotal does not preclude malicious intent, as the domain has already been flagged by multiple specialized anti‑phishing services. Because the domain resolves to a shared Cloudflare edge, attribution to a single actor is limited, and future re‑use of the same sub‑domain or a similar naming pattern cannot be ruled out. Organizations should also review internal logs for any recent authentication attempts to cryptocurrency wallets or exchanges that coincide with the domain’s creation window. Given the elevated risk level, inclusion of the domain in threat‑intel feeds and SIEM correlation rules is recommended.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 12/08/2026
6 sources externes surveillées Aucune correspondance
Chronologie de détection
-
État du domaine
Accessible → Inaccessible
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Analyse forensique
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of leveredge-claim.pages.dev · checked Apr 12, 2026
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif