desktop-ledgrcom-eng[.]pages[.]dev
“Suspected phishing site | Cloudflare”
Osservazione memorizzata
Contrasto dei titoli osservato
Riepilogo delle prove
desktop-ledgrcom-eng.pages.dev is currently under investigation for generic phishing activity targeting unsuspecting users with a fake Google Trust Services ledger interface. This assessment is active as of the unique seed 6bb7af, indicating ongoing threat actor operations. The domain operates on IP 188.114.96.3 and leverages a Google Trust Services SSL certificate to enhance its guise of legitimacy. Registered through Cloudflare, the site remains undetected by VirusTotal with 8/95 security engines flagging its malicious nature.
This domain was flagged with a generic_phishing threat type and an under_investigation risk level, reflecting its current status as an emerging but unconfirmed threat. Technical indicators include resolution to IP 188.114.96.3, an SSL certificate issued by Google Trust Services, and registration via Cloudflare, Inc. As of this analysis, VirusTotal reports 0 detections out of 95 engines, suggesting it has evaded automated detection systems, possibly due to its recent deployment or sophisticated obfuscation techniques. The domain’s structure, combining a deceptive subdomain and Cloudflare’s infrastructure, is designed to mimic legitimate Google services, thereby increasing its potential for successful deception.
Users should exercise extreme caution when encountering desktop-ledgrcom-eng.pages.dev, as it poses a credible threat of credential theft under the pretense of a secure ledger interface. To mitigate risk, avoid accessing or interacting with this domain entirely. If already accessed, disconnect from the site immediately, change any entered credentials on a separate verified device, and scan for potential malware or unauthorized access. Report the domain to relevant authorities (e.g., Google Safe Browsing, your organization’s security team) and consider blocking the IP 188.114.96.3 at the network level to prevent further exploitation. Given the undetected status on VirusTotal, manual vigilance and proactive blocking are critical until automated defenses catch up.
Data Coverage
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 10/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Informazioni forensi
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of desktop-ledgrcom-eng.pages.dev · checked Apr 4, 2026
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo