legitedge[.]com
Проверка домена legitedge.com на фишинг и безопасность
“Legitedge: Expert Labour Law & Payroll Compliance | NiyamaTrust”
legitedge.com — Последний известный активный (HTTP 200). Сводка доказательств: VirusTotal 4/94 (SOCRadar); PhishDestroy score 76/100. Регистратор: Hostinger.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
legitedge.com was registered on 04 April 2026 through Hostinger operations, UAB. The domain resolves to IP 92.113.23.9, which geolocates to Germany and is hosted on the same network used by Hostinger DE. DNS resolution is delegated to apollo.dns-parking.com and athena.dns-parking.com, both typical parking nameservers. The site presents a valid TLS certificate issued by Let’s Encrypt (R12) and returns HTTP 200 with the page title “Legitedge: Expert Labour Law & Payroll Compliance | NiyamaTrust”.
Multiple security scanners flag the domain. Four of ninety‑five scanning engines have identified malicious behavior. Threat‑intelligence feeds have included the domain in a pulse, and trust scoring systems assign a score of 23 out of 100, indicating low confidence in the site’s legitimacy. The domain is also listed on an external blocklist, and an anti‑phishing list records it as a phishing indicator.
The exact phishing payload or credential‑harvesting mechanism has not been disclosed in public reports, and the current webpage appears to mimic a legitimate labour‑law and payroll compliance service. Without a captured malicious form or observed credential submission, the precise lure remains uncertain, but the combination of low trust score, detection by multiple vendors, and blocklist presence strongly suggests a credential‑phishing campaign targeting employees of payroll or HR departments.
Defenders should block any network connections to 92.113.23.9 and add legitedge.com to URL filtering rules. Email security gateways should be tuned to flag messages that reference the domain or use similar branding. Continuous monitoring of DNS queries for the domain and its authoritative nameservers is advised, as attackers may switch hosting or employ fast‑flux techniques. Incident response teams should treat any credentials submitted to the site as compromised and enforce password resets for affected users.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Криминалистическая аналитика
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание