live-ldgrlive[.]pages[.]dev
Phishing- und Sicherheitsprüfung für live-ldgrlive.pages.dev
“Ledger® Live Login® (en-US) | Ledger Support”
live-ldgrlive.pages.dev — Letzter bekanntermaßen aktiv (HTTP 200). Markenidentität: Ledger; Betrugstyp: Credential Phishing. Zusammenfassung der Beweislage: VirusTotal 7/91 (alphaMountain.ai, BitDefender, Fortinet, G-Data, Kaspersky); PhishDestroy score 86/100. Registrar: Cloudflare.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
PhishDestroy identifies domain live-ldgrlive.pages.dev as a credential-stealing phishing page impersonating a legitimate login portal. Registered via Cloudflare, Inc., this domain leverages Cloudflare Pages to host a malicious page designed to harvest user credentials under the guise of authentic branding. The phishing kit has not yet been classified in open-source drainer databases but is actively serving malicious content targeting unsuspecting users.
Technical analysis reveals this domain resolves to IP 172.66.44.129 and is secured with a Google Trust Services SSL certificate, increasing its perceived legitimacy. At time of analysis, VirusTotal reports 0 detections out of 95 scanners, which is expected for a newly deployed threat. The domain is served through Cloudflare Pages and has not yet appeared on any major blocklists, leaving it in an early operational phase. WHOIS data indicates recent registration via Cloudflare, Inc., further aligning with known abuse patterns of this provider’s dynamic hosting services.
This domain remains active and under investigation. Users are advised not to interact with any links or content associated with live-ldgrlive.pages.dev. Security teams should immediately block the domain at the network perimeter and monitor endpoints for anomalous outbound connections to 172.66.44.129. Given the absence of detections on VirusTotal and lack of blocklist inclusion, the risk of successful compromise remains moderate until broader detection signatures are deployed and enforcement actions are taken. Remain vigilant for reports of credential theft linked to this domain.
Erkenntnisse zur Netzwerksicherheit
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Technologien · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100 % KonfidenzCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100 % KonfidenzHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % KonfidenzVirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of live-ldgrlive.pages.dev · checked Apr 29, 2026
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt