legercom-start-auths[.]pages[.]dev
“Suspected phishing site | Cloudflare”
संग्रहीत अवलोकन
देखा गया शीर्षक अंतर
साक्ष्य सारांश
Analysis as of July 25 2026 indicates that the domain legercom-start-auths.pages.dev was registered on February 21 2026 through Cloudflare, Inc. The domain resolves to the IP address 188.114.96.3, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. The site presents a Cloudflare‑generated page titled “Suspected phishing site | Cloudflare” and returns an HTTP 403 status code. The TLS certificate is issued by Google Trust Services under the WE1 profile, confirming the use of a valid HTTPS endpoint. Passive scans show the presence of HSTS, HTTP/3, and Cloudflare‑specific headers, confirming that the infrastructure is fully hosted on Cloudflare’s edge network. Threat intelligence sources have classified the domain as a credential phishing operation.
PhishDestroy has already added the domain to its blocklist, and a separate blocklist also lists the domain, giving it a total of one external blocklist entry. VirusTotal reports that 14 of 93 security vendors have flagged the domain, indicating a moderate level of detection consensus. Gridinsoft assigns a trust score of 0 out of 100, reinforcing the malicious assessment. The nameservers elijah.ns.cloudflare.com and bethany.ns.cloudflare.com are standard Cloudflare delegations and do not provide additional attribution. The current operational status is offline, with the site returning a 403 response, which suggests that the phishing content may have been taken down or is temporarily inaccessible.
No further page content has been captured, and the exact phishing lure or target brand has not been disclosed beyond the generic “credential phishing” label. Consequently, the precise tactics, techniques, and procedures employed by the actors remain unknown. Defenders should continue to block the domain at network perimeter and DNS layers, monitor for any resurgence of activity, and consider adding the associated IP address 188.114.96.3 to reputation lists.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 10/08/2026
पहचान समयरेखा
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
-
डोमेन स्थिति
पहुँच योग्य → पहुँच योग्य नहीं
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
तकनीकें
3 उच्च-विश्वसनीयता वाली तकनीकें पहचानी गईं
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of legercom-start-auths.pages.dev · checked Apr 13, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।