web-leger-us[.]pages[.]dev
“Suspected Phishing | Cloudflare”
証拠の概要
The domain web-leger-us.pages.dev was registered on October 15 2025 via Cloudflare Pages, a service that provides static web hosting under the Cloudflare infrastructure. Since its inception the site has been observed in active malicious use, and as of the reporting date (July 29 2026) it carries an elevated risk rating. Automated analysis on VirusTotal shows that 14 out of 91 security vendors classify the domain as malicious, indicating a consensus among multiple scanning engines that the site is being used for phishing. The domain is also listed on a public phishing blocklist operated by PhishDestroy, which corroborates the detection from VirusTotal and provides an additional source of real‑time mitigation. In addition, the domain appears on one external security blocklist, further confirming that independent threat‑intel feeds have flagged it.
Infrastructure profiling reveals that the domain resolves to Cloudflare’s edge network, but no explicit IP address or autonomous system number has been disclosed in the available intelligence. No TLS certificate details, HTTP response codes, or page‑title metadata have been published, leaving the exact content and delivery mechanisms of the site unverified. Consequently, while the hosting environment is known, the specific phishing payload, target brand, or credential‑capture technique remains uncertain. Defenders should prioritize immediate blocking of web-leger-us.pages.dev at perimeter firewalls, DNS filtering, and endpoint protection suites.
Given its presence on VirusTotal and PhishDestroy, existing threat‑intel feeds can be leveraged to automate the block. Continuous monitoring of Cloudflare‑hosted subdomains is recommended, as the attacker may rotate URLs under the same provider. Organizations should also consider raising user awareness for any unsolicited communications that reference URLs ending in “pages.dev”, especially those that request credential entry.
Data Coverage
ネットワークセキュリティインテリジェンス
脅威対応 Pipeline
ブロックリストの確認範囲
監視対象の外部情報源 10 件 · 保存スナップショット 2026年8月11日
検出タイムライン
-
VirusTotal
14 → 15
-
ドメイン状態
到達可能 → 到達不能
ドメイン・インテリジェンス
技術詳細DNS、TLS 名、タイムスタンプ
使用技術
高確信度で特定された技術:3 件
VirusTotalによる分析
サイトパフォーマンス分析
Google PageSpeed Insights — mobile performance audit of web-leger-us.pages.dev · checked Jul 29, 2026
このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください