# app----live---ldgrr.pages.dev — SUSPICIOUS > PhishDestroy identifies app----live---ldgrr.pages.dev as a credential phishing site impersonating a login portal. ## Summary PhishDestroy identifies app----live---ldgrr.pages.dev as a live credential-phishing page designed to steal login details. The site mimics a legitimate authentication portal, tricking users into submitting usernames, passwords, or multi-factor codes under false pretenses. Once harvested, these credentials are often used for account takeover, further phishing campaigns, or sold on dark-web markets. Avoid interacting with this domain entirely. This domain was flagged using multiple threat-intelligence pipelines and remains under active investigation. VirusTotal scanning shows zero detections out of 95 engines as of time of analysis, underscoring how rapidly attackers can weaponize legitimate services like Cloudflare Pages. The domain resolves to IP address 172.66.46.235 and is registered through Cloudflare, Inc., which attackers abuse to host malicious content behind seemingly reputable infrastructure. If you visited app----live---ldgrr.pages.dev, do not enter any credentials or personal information. Disconnect from the site immediately, clear browser cache and cookies related to the session, and run a reputable antivirus or anti-malware scan. Consider changing passwords for affected accounts using a different, secure device, and enable multi-factor authentication where available. Report the domain to your IT/security team or file a report with the Anti-Phishing Working Group (APWG) using the seed identifier 1324e2 for cross-referencing. Monitor financial and account activity closely for signs of compromise. Act now to prevent credential misuse. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registrar: Cloudflare, Inc. - IP: 172.66.46.235 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/efa486cf-8ca6-4868-a796-7df49322e10d - PhishDestroy: https://phishdestroy.io/domain/app----live---ldgrr.pages.dev/ - LLM endpoint: https://phishdestroy.io/domain/app----live---ldgrr.pages.dev/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/app----live---ldgrr.pages.dev/ Last updated: 2026-03-22