MALICIOUS — HIGH
ldgr-ssm-dev[.]weebly[.]com
2 of 91 security engines flagged the domain; the latest stored check returned HTTP 404.
- VirusTotal
- 2/91
- Blocklists
- No stored match
- Доступність
- Контент недоступний · HTTP 404
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
ldgr-ssm-dev.weebly.com — Контент недоступний (HTTP 404). Уособлення бренду: Ledger; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 2/91 (ADMINUSLabs, Kaspersky); URLScan malicious verdict; PhishDestroy score 66/100. Реєстратор: MarkMonitor.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Digest
ldgr-ssm-dev.weebly.com is classified high with an evidence score of 66/100. 2 of 91 security engines flagged the domain. Registered 27 Apr 2026 via MarkMonitor Inc., hosted on 74.115.51.9 (Weebly, Inc., US). The latest stored check on 9 Aug 2026 returned HTTP 404 and includes a capture.
Stored generated summary (templated)mistral · 28.04.2026
Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.
PhishDestroy identifies ldgr-ssm-dev.weebly.com as an active generic phishing domain currently under investigation for potential credential theft operations. The domain employs Weebly’s hosting infrastructure, a platform frequently abused by threat actors to deploy fraudulent login portals that harvest user credentials. While the specific drainer kit remains unverified at this stage, the domain’s structure and recent activity patterns suggest alignment with crypto-focused credential harvesting campaigns targeting unsuspecting users. No evidence currently links the site to a branded impersonation scheme, but the absence of a recognized brand does not preclude its use in broader phishing ecosystems.
Technical analysis reveals several red flags: the domain was registered on March 29, 2006 through MarkMonitor Inc., a registrar often associated with legitimate domains but also exploited for privacy protections that obscure malicious actors. It resolves to IP 74.115.51.9 and operates under a Let’s Encrypt SSL certificate, both common tactics to enhance perceived legitimacy. Notably, VirusTotal shows 0 detections across 95 security engines at the time of analysis, indicating evasion of automated detection systems. No Google Safe Browsing (GSB) blocklist status or third-party blocklist inclusion data is available, emphasizing the need for proactive monitoring.
As of this report, ldgr-ssm-dev.weebly.com remains active with an 'under_investigation' status. Immediate risk is assessed as elevated due to the domain’s longevity, infrastructure choices, and lack of detections despite its suspicious activity. Users should avoid interacting with the domain and report it to their security teams or platforms like PhishDestroy. Security teams are advised to monitor network traffic for connections to 74.115.51.9 and inspect internal logs for unauthorized credential submissions. While the current risk level is provisional, the absence of detections suggests a high potential for evolving threats, warranting heightened vigilance.
Обсяг даних13 recorded checks
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: weebly.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain weebly.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 7 identified
Amazon Web Services (AWS) is a comprehensive cloud services platform offering compute power, database storage, content delivery and other functionality.
aws.amazon.com 100% впевненостіjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% впевненостіGoogle Analytics is a free web analytics service that tracks and reports website traffic.
google.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіАналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of ldgr-ssm-dev.weebly.com · checked Apr 28, 2026
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.