ledgcom-eng-us[.]pages[.]dev
ledgcom-eng-us.pages.dev için kimlik avı ve güvenlik kontrolü
“Ledger Start — Setup Your Ledger Device”
ledgcom-eng-us.pages.dev — Bilinen son aktif (HTTP 200). Marka kimliğine bürünme: Ledger; Dolandırıcılık türü: Brand Impersonation. Kanıt özeti: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, Ermes); URLScan malicious verdict; PhishDestroy score 100/100. Kayıt kuruluşu: Cloudflare.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
PhishDestroy identifies ledgcom-eng-us.pages.dev as an active generic phishing domain. The threat involves impersonation tactics targeting unsuspecting users under the guise of legitimate financial or engagement platforms. Current evidence suggests this campaign is operational and distributing deceptive content through social engineering lures, likely involving fake login portals or credential harvesting pages.
This domain was flagged by 12 of 95 VirusTotal vendors, indicating a low detection rate despite its malicious intent. The domain is registered through Cloudflare, Inc., resolving to IP address 172.66.47.148. The SSL certificate is issued by Google Trust Services, which may contribute to its perceived legitimacy. While specific creation and blocklist data are pending further analysis, the absence of detections highlights the evasive nature of this campaign. The use of a Google Trust Services SSL certificate suggests an attempt to bypass traditional security filters by leveraging trusted certificate authorities.
The current status of this campaign remains active, with no detections on VirusTotal and minimal observable blocklisting. Organizations and users should treat this domain as a high-risk threat due to its active distribution and low detection rate. Immediate action includes blocking the domain at the network and endpoint levels, updating threat intelligence feeds, and conducting employee awareness training to mitigate the risk of credential theft or financial fraud. PhishDestroy recommends isolating any systems that may have interacted with this domain and conducting forensic analysis to assess potential compromise. Users should verify the authenticity of any unsolicited communications referencing financial or engagement platforms and avoid entering credentials on untrusted pages.
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
VirusTotal Analizi
Arşivlenmiş Kanıtlar
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of ledgcom-eng-us.pages.dev · checked Apr 5, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin