web-leger-us[.]pages[.]dev
“Suspected Phishing | Cloudflare”
Зведення доказів
The domain web-leger-us.pages.dev was registered on October 15 2025 via Cloudflare Pages, a service that provides static web hosting under the Cloudflare infrastructure. Since its inception the site has been observed in active malicious use, and as of the reporting date (July 29 2026) it carries an elevated risk rating. Automated analysis on VirusTotal shows that 14 out of 91 security vendors classify the domain as malicious, indicating a consensus among multiple scanning engines that the site is being used for phishing. The domain is also listed on a public phishing blocklist operated by PhishDestroy, which corroborates the detection from VirusTotal and provides an additional source of real‑time mitigation. In addition, the domain appears on one external security blocklist, further confirming that independent threat‑intel feeds have flagged it.
Infrastructure profiling reveals that the domain resolves to Cloudflare’s edge network, but no explicit IP address or autonomous system number has been disclosed in the available intelligence. No TLS certificate details, HTTP response codes, or page‑title metadata have been published, leaving the exact content and delivery mechanisms of the site unverified. Consequently, while the hosting environment is known, the specific phishing payload, target brand, or credential‑capture technique remains uncertain. Defenders should prioritize immediate blocking of web-leger-us.pages.dev at perimeter firewalls, DNS filtering, and endpoint protection suites.
Given its presence on VirusTotal and PhishDestroy, existing threat‑intel feeds can be leveraged to automate the block. Continuous monitoring of Cloudflare‑hosted subdomains is recommended, as the attacker may rotate URLs under the same provider. Organizations should also consider raising user awareness for any unsolicited communications that reference URLs ending in “pages.dev”, especially those that request credential entry.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 10.08.2026
Хронологія виявлення
-
VirusTotal
14 → 15
-
Статус домену
Доступний → Недоступний
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
Технології
Виявлено 3 технології з високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of web-leger-us.pages.dev · checked Jul 29, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога