liveledgar-desktop[.]pages[.]dev
“Suspected phishing site | Cloudflare”
证据摘要
PhishDestroy identifies liveledgar-desktop.pages.dev as an active phishing domain designed to deceive users into submitting sensitive information under the guise of a fake Edgar filing portal. This threat actor leverages Cloudflare’s pages.dev subdomain and Google Trust Services SSL certificates to enhance credibility, tricking users into believing the fraudulent page is legitimate. The domain resolves to IP 172.66.47.74, which is currently not blocked by any known blocklist services, as evidenced by the 3/95 VirusTotal detection rate. This low detection score indicates the domain is either newly deployed or adeptly evading signature-based detection mechanisms, increasing its potential to remain operational for longer periods. This domain was flagged for its targeted phishing campaign aimed at financial professionals and investors expecting to access official Edgar filings, a critical resource for corporate disclosures and financial data. The use of Cloudflare’s infrastructure and legitimate SSL certificates suggests a sophisticated approach to social engineering, exploiting the trust users place in secure connections and reputable hosting providers. The domain’s registration and hosting details—registered through Cloudflare, Inc. and served via IP 172.66.47.74—provide minimal investigative leads due to Cloudflare’s anonymizing services, further complicating mitigation efforts by security teams. The absence of any blocklist entries (0 detections on VirusTotal) underscores the urgency for real-time monitoring and proactive threat intelligence to preempt potential compromises. If you or your organization has interacted with liveledgar-desktop.pages.dev, whether through accessing files, submitting credentials, or downloading documents, immediate action is required to mitigate potential data exposure. Begin by disconnecting from the network to prevent lateral movement in case of latent infections, then audit financial accounts, corporate communications, and internal systems for signs of unauthorized access or data exfiltration. Report the incident to your incident response team and file a complaint with the Federal Trade Commission (FTC) or relevant financial regulatory bodies, such as the SEC for Edgar-related phishing. Additionally, block the domain and IP (172.66.47.74) at the network perimeter using your firewall or proxy solution, and update endpoint detection rules to flag future attempts to access this domain. Users should also verify all Edgar filing links by cross-referencing the official SEC website (sec.gov) or designated filing agents to avoid similar pitfalls in the future.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月13日
取证情报
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of liveledgar-desktop.pages.dev · checked Apr 3, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控