access-ledgr-s-entart[.]pages[.]dev
“Ledger Login Guide — Clear Operational Steps for Secure Access”
access-ledgr-s-entart.pages.dev — Có thể truy cập · hạn chế quyền truy cập (HTTP 403). Mạo danh thương hiệu: Ledger; Loại lừa đảo: Credential Phishing. Tóm tắt bằng chứng: VirusTotal 14/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, Ermes); PhishDestroy score 97/100. Nhà đăng ký: Cloudflare.
Phân tích chi tiết của PhishDestroy AI bên dưới được giữ bằng tiếng Anh để bảo toàn hồ sơ pháp chứng gốc.
PhishDestroy identifies active credential phishing infrastructure targeting enterprise users via access-ledgr-s-entart.pages.dev, a page hosted on Cloudflare Pages resolving to IP 172.66.47.182. The domain leverages a Google Trust Services SSL certificate to appear legitimate while delivering a generic phishing drainer kit designed to harvest corporate login credentials. No specific brand is mimicked in the observed payload, suggesting opportunistic targeting of business users. This constitutes a direct risk to organizational security through unauthorized access and data exfiltration.
This domain was flagged with a current VirusTotal detection score of 10/95 as of the latest scan, indicating zero antivirus engines have flagged the malicious content. It is registered through Cloudflare, Inc. and resolves to IP address 172.66.47.182. The SSL certificate is issued by Google Trust Services, which is commonly abused in phishing campaigns to establish trust. The seed identifier 780497 confirms this as a tracked active campaign under investigation, with no confirmed blocklist presence at this stage.
The threat remains active with an under_investigation status as of seed 780497. Immediate response actions include blocking the domain access-ledgr-s-entart.pages.dev and IP 172.66.47.182 at the network perimeter, disabling access to Cloudflare Pages-hosted content where possible, and conducting user awareness training to prevent credential submission. While the risk is currently elevated due to zero detections and active hosting, blocking these indicators will mitigate immediate exposure. Users are advised to verify all login pages and report any suspicious credential prompts to security teams immediately.
Tình báo an ninh mạng
Pipeline ứng phó với các mối đe dọa
Trạng thái trong danh sách chặn công khai
Phân tích của VirusTotal
Phân tích hiệu suất trang
Google PageSpeed Insights — mobile performance audit of access-ledgr-s-entart.pages.dev · checked Apr 6, 2026
Bằng chứng và các báo cáo bên ngoài
Bạn có bị ảnh hưởng bởi trang web này không?
Nếu bạn đã nhập thông tin xác thực tài khoản, thông tin cá nhân hoặc thông tin thanh toán hoặc đã tải xuống tệp từ miền này, hãy hành động ngay lập tức. Dưới đây là các nguồn lực giúp bạn báo cáo vụ việc và bảo vệ chính mình.
Hãy báo cáo với chính quyền địa phương
Chọn quốc gia của bạn để nhận liên hệ tội phạm mạng chính thức hoặc soạn thảo đơn khiếu nại →.
Kiểm tra bất kỳ tên miền nào
Phân tích mối đe dọa bằng cách sử dụng danh sách chặn được lưu trữ, WHOIS, DNS và bằng chứng quét công khai
Quét ngayBáo cáo lừa đảo qua email
Hãy gửi các tên miền đáng ngờ đến cơ sở dữ liệu mối đe dọa của chúng tôi — để bảo vệ cộng đồng
Báo cáoDòng tin tức về các mối đe dọa thời gian thực
Các báo cáo lừa đảo gần đây và những thay đổi về tính khả dụng được quan sát thấy
Theo dõiLuôn cập nhật thông tin, luôn an toàn
Theo dõi các mối đe dọa đang diễn ra hoặc phản đối danh sách này nếu bạn cho rằng đây là kết quả báo động sai