start--ledgrecom--edge[.]pages[.]dev
start--ledgrecom--edge.pages.dev 网络钓鱼与安全检查
“Leger Start Page ®™ — Explore leger.com/start for Transparent, Secure, and Sc...”
start--ledgrecom--edge.pages.dev — 可达 · 访问受限 (HTTP 403). 品牌冒充:Ledger; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 0/94; PhishDestroy score 45/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies start--ledgrecom--edge.pages.dev as an active generic phishing domain currently under investigation by security teams. This site masquerades as a legitimate service to harvest user credentials and sensitive data, posing a clear threat to unwary visitors. The domain remains unblocked in most feeds despite its malicious nature, requiring immediate attention from SOC teams and end-users alike. The risk level is classified as under_investigation, but early indicators suggest this threat is both active and evolving in sophistication, warranting elevated scrutiny during incident response workflows. This domain was flagged after resolving to IP address 188.114.97.3 and registering through Cloudflare, Inc., leveraging Google Trust Services for SSL encryption to enhance credibility. According to VirusTotal, the domain currently shows 0 detections out of 95 security engines, indicating it has not yet been widely recognized by automated defenses. While no formal creation date is publicly available, the domain’s configuration suggests recent deployment aimed at exploiting trust in well-known infrastructure. As of now, this domain remains absent from major threat intelligence blocklists and reputation databases, further complicating early detection efforts. To mitigate exposure to this phishing domain, security teams should implement DNS-level blocking using the IP address 188.114.97.3 and domain name start--ledgrecom--edge.pages.dev in firewalls and secure web gateways. Users should avoid accessing the site and report any accidental visits to their SOC for analysis. Additionally, organizations are advised to inspect SSL certificates for anomalies and validate traffic patterns involving Cloudflare Workers domains, as this infrastructure is increasingly abused in phishing campaigns. Continuous monitoring for new subdomains or variations is strongly recommended to prevent lateral movement within compromised networks.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 4 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web analytics service tracking website traffic and user behavior.
marketingplatform.google.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of start--ledgrecom--edge.pages.dev · checked Apr 13, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。