es4dr56tyuikdf6g-dp9xyf4hhc53. edgeone. dev
This edgeone.dev subdomain hosts a phishing page designed to harvest credentials.
At a glance
Antivirus · registration · identity- 15 engines classified the URL as malicious and 1 as suspicious; 47 returned harmless, 29 returned undetected, and 0 returned no usable result.
- Operator identity: Missing. No independently verifiable operator identity
- Google Safe Browsing returned no listed threat categories for this address at scan time.
- The site presented a valid TLSv1.3 certificate at scan time.
Intelligence
The domain es4dr56tyuikdf6g-dp9xyf4hhc53.edgeone.dev served a single-hop landing page that antivirus engines overwhelmingly labeled malicious, aligning with a phishing operation that attempts to capture visitor credentials.
Evidence Map
One or more reputation sources recorded a concern
No independently verifiable operator identity
No usable behavior observation was saved
No reliable registration history was saved
- 115 antivirus engines flagged the URL as malicious
- 2Primary harm is credential harvesting via phishing page
Domain and hosting profile
The reported address is the exact subdomain es4dr56tyuikdf6g-dp9xyf4hhc53.edgeone.dev reached over plain HTTP. A valid TLSv1.3 certificate was presented, yet the hosting IP carried only a minimal abuse-confidence score of 2/100 from a single report.
Visitor path and page behavior
The saved redirect chain contained one hop with no cross-domain, homoglyph, or internationalized-domain indicators. No traffic indexing was recorded for the address.
Security-vendor findings
Fifteen antivirus engines classified the URL as malicious and one returned a suspicious result, while Google Safe Browsing listed no threat categories at scan time.
Threat category and harm mechanism
The page archetype is an unknown landing page whose supported harm mechanism is credential harvesting via phishing.
Web Research
Threat Detection
Antivirus results, browser warnings, isolated page observations, and the threat pattern identified in this report.
Antivirus engine results
Evidence behind this threat profile
- 115 antivirus engines flagged the URL as malicious
- 2Primary harm is credential harvesting via phishing page
1 of 21 categories showed signals
This profile separates the site's primary threat from other patterns supported by the saved page evidence, public research, and security findings.
- 15/92 AV engines flagged the domain as phishing
- Specific detections: BitDefender phishing, Cluster25 phishing, ESET phishing, Forcepoint ThreatSeeker phishing, Fortinet phishing, G-Data phishing
Technical Details
Identity, domain, infrastructure, and connection facts saved with this scan.
July 21, 2026 at 11:04 AM UTCIdentity
6 facts- Operator
- Missing
- On-domain email
- Not observed
- Other email
- Not observed
- Phone
- Not observed
- Postal address
- Not observed
- Social profiles
- Not observed
Domain
8 facts- Domain age
- Unavailable
- Registered
- Unavailable
- Registrar
- Unavailable
- Expires
- Unavailable
- WHOIS updated
- Unavailable
- Registrant
- Unavailable
- Registration country
- Unavailable
- WHOIS privacy
- Unavailable
Infrastructure
14 facts- HTTPS
- Valid certificate
- TLS protocol
- TLSv1.3
- Certificate issuer
- DigiCert, Inc. · DigiCert Secure Site OV G2 TLS CN RSA4096 SHA256 2022 CA1
- Certificate subject
- *.edgeone.dev
- Certificate valid from
- Nov 19, 2025
- Certificate valid to
- Nov 19, 2026
- Network address
- 43.174.246.29
- ASN
- Unavailable
- Hosting organization
- ACEVILLE PTE.LTD.
- Country
- SG
- Server
- Unavailable
- Site platform
- Unavailable
- IP reputation
- 2% confidence · 1 reports
- Tor exit node
- No
Connections
13 facts- Scan scope
- Domain
- Destination host
- es4dr56tyuikdf6g-dp9xyf4hhc53.edgeone.dev
- Redirects
- 1
- Cross-domain redirect
- No
- Redirect status codes
- 302 → 404
- Lookalike characters
- Not observed
- Internationalized domain
- No
- Page response
- 404
- Observation coverage
- Unavailable
- Extracted links
- Unavailable
- Unique IPs contacted
- Unavailable
- Countries contacted
- Unavailable
- Referenced domains
- 0
What to do
Do not visit or enter any credentials.
If you entered a password, change it on the official service by typing its known address yourself, enable two-factor authentication, and review recent account activity. Contact your bank if you also entered payment details.
Final Verdict
Why this verdict
The URL was classified malicious for phishing because 15 antivirus engines flagged it and the page matches the credential-harvesting archetype.
Do not visit or enter any credentials.
Key evidence
- 115 antivirus engines flagged the URL as malicious
- 2Primary harm is credential harvesting via phishing page
- 315 engines classified the URL as malicious and 1 as suspicious; 47 returned harmless, 29 returned undetected, and 0 returned no usable result.
Safety FAQ
Is es4dr56tyuikdf6g-dp9xyf4hhc53.edgeone.dev safe to use?+
The URL was classified malicious for phishing because 15 antivirus engines flagged it and the page matches the credential-harvesting archetype.
What should I do about es4dr56tyuikdf6g-dp9xyf4hhc53.edgeone.dev?+
Do not visit or enter any credentials.
How old is es4dr56tyuikdf6g-dp9xyf4hhc53.edgeone.dev?+
A reliable public registration date was not available for es4dr56tyuikdf6g-dp9xyf4hhc53.edgeone.dev.
What if I already interacted with es4dr56tyuikdf6g-dp9xyf4hhc53.edgeone.dev?+
If you entered a password, change it on the official service by typing its known address yourself, enable two-factor authentication, and review recent account activity. Contact your bank if you also entered payment details.
When was this report updated?+
This report reflects the scan completed July 21, 2026 at 11:04 AM UTC.
User reviews & comments(0)
Share your experience — "Lost $200 on a fake checkout" is more useful than "Scam". Your review helps others avoid traps.