home-ledgr-enus-new[.]pages[.]dev
“Ledger Onboarding Portal”
home-ledgr-enus-new.pages.dev — İçerik kullanılamıyor. Marka kimliğine bürünme: Ledger; Dolandırıcılık türü: Brand Impersonation. Kanıt özeti: VirusTotal 11/91 (alphaMountain.ai, BitDefender, ESET, Fortinet, G-Data); URLScan malicious verdict; PhishDestroy score 88/100. Kayıt kuruluşu: Cloudflare.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
PhishDestroy identifies the domain home-ledgr-enus-new.pages.dev as a credential theft site currently under active investigation. This Cloudflare Pages-hosted domain is suspected of masquerading as Intuit QuickBooks to harvest login credentials. The site remains accessible as of the latest scan and has not yet been neutralized by takedown efforts. This domain was flagged by 5 of 95 VirusTotal vendors, registered through Cloudflare, Inc., and resolves to IP address 188.114.97.3. The SSL certificate is issued by Google Trust Services, indicating HTTPS enforcement without validatable trust. The seed identifier 0547fe confirms this as a unique investigative target with no prior blocklist inclusion recorded at the time of analysis. The domain is currently active and represents an elevated risk due to its use of credible infrastructure and brand impersonation tactics. Users are advised to avoid interacting with this domain, verify all login pages via official Intuit domains, enable multi-factor authentication, and report any exposure to security teams. Organizations should monitor DNS logs for connections to 188.114.97.3 and update firewall rules to block inbound and outbound traffic to this IP. Immediate takedown requests should be submitted to Cloudflare Trust & Safety and Google Safe Browsing with full URL and IP evidence. Security teams are encouraged to share IOCs with threat intelligence platforms to prevent propagation.
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org %100 güvenCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of home-ledgr-enus-new.pages.dev · checked May 1, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin