sso-lezrr-desk-io[.]pages[.]dev
“Ledger Live™ Desktop – Secure Crypto Management®”
sso-lezrr-desk-io.pages.dev — المحتوى غير متوفر. انتحال العلامة التجارية: Ledger; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 14/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLScan malicious verdict; Google Safe Browsing flagged; PhishDestroy score 97/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy identifies the domain sso-lezrr-desk-io.pages.dev as hosting an active crypto drainer phishing campaign, currently in operation. This threat mimics legitimate authentication portals to deceive users into connecting crypto wallets or submitting credentials, which are then drained by attackers. The infrastructure is designed to exploit trust in cloud-hosted services, specifically leveraging Cloudflare Pages to host malicious content under a plausible domain structure.
This domain was flagged by 13 of 95 VirusTotal security vendors, indicating significant malicious activity. Registered through Cloudflare, Inc., the domain resolves to IP address 188.114.97.3. It holds a Google Trust Services SSL certificate, despite its malicious nature. Google Safe Browsing has classified this domain under the SOCIAL_ENGINEERING category, further confirming its deceptive intent. The domain was created recently and is actively being used to target users in phishing operations.
The current status of sso-lezrr-desk-io.pages.dev remains active, posing a high risk to users who may interact with it. PhishDestroy strongly recommends avoiding any interaction with this domain, including clicking links or entering credentials. Users should verify the legitimacy of any unexpected authentication requests or wallet connection prompts by cross-referencing official sources. Employ multi-factor authentication (MFA) and hardware wallets where possible to mitigate risks. Block this domain and IP at the network level to prevent further exposure. Report any encounters with this domain to PhishDestroy for further analysis and community protection.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
الاستخبارات الجنائية الرقمية
التقنيات · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of sso-lezrr-desk-io.pages.dev · checked Mar 31, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب