io-liv-lgior[.]pages[.]dev
“Suspected phishing site | Cloudflare”
io-liv-lgior.pages.dev — المحتوى غير متوفر. انتحال العلامة التجارية: Ledger; نوع الاحتيال: Crypto Drainer. ملخص الأدلة: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLScan malicious verdict; PhishDestroy score 100/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
io-liv-lgior.pages.dev is a crypto drainer posing as a legitimate service to trick users into connecting crypto wallets and stealing funds in seconds. These sites mimic real platforms to lure victims into authorizing malicious transactions that drain their assets directly from their wallets without further interaction. Once a connection is made, the drainer can silently transfer tokens to attacker-controlled addresses, often without the victim noticing until it’s too late. Always verify URLs and use hardware wallets for high-value transactions to prevent unauthorized access. This domain was flagged by PhishDestroy after VirusTotal detected 1 positive security alert from 95 vendors, showing extremely low detection despite active malicious behavior. The site resolves to IP 172.66.47.189 and uses a Google Trust Services SSL certificate, while being registered through Cloudflare Inc. via their Pages.dev platform, which attackers often exploit for fast, temporary hosting to evade takedowns. The low VT count suggests it’s newly active and still flying under the radar of many detection systems. If you visited io-liv-lgior.pages.dev or entered any wallet credentials, immediately disconnect your wallet, revoke any unauthorized permissions through your wallet’s settings, transfer remaining funds to a new wallet, and scan your device with updated antivirus software. Report the incident to your wallet provider and consider filing a complaint with local cybercrime units or platforms like Chainalysis to help track and block the attackers. Never reuse wallet passwords or seed phrases, and always double-check domain spellings and HTTPS certificates before interacting.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org ثقة 100٪Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of io-liv-lgior.pages.dev · checked Apr 29, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب