# ldgorlive-web.pages.dev — SUSPICIOUS > PhishDestroy warns that ldgorlive-web.pages.dev is an active crypto drainer impersonating legitimate brands. ## Summary PhishDestroy identifies ldgorlive-web.pages.dev as an active crypto drainer kit designed to steal cryptocurrency from unwary users. The domain masquerades as a legitimate streaming or service page to lure victims into connecting wallets or entering seed phrases. The forensic profile shows a single detection on VirusTotal (1/95 vendors), Cloudflare registration, and resolution to IP 172.66.44.137 via Google Trust Services SSL. No additional blocklist entries were found and the registrar’s privacy protections obscure ownership details, increasing operational opacity. This domain remains active with elevated risk. Users should block the IP and domain immediately, verify any links in PhishDestroy’s database, and avoid wallet connections until the threat is neutralized. Residual risk persists due to Cloudflare’s rapid provisioning and SSL-backed trust cues. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registrar: Cloudflare, Inc. - IP: 172.66.44.137 ## Detection Status - VirusTotal: 1 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/915a5212-ad7a-4245-b69b-67c8edf806ad - PhishDestroy: https://phishdestroy.io/domain/ldgorlive-web.pages.dev/ - LLM endpoint: https://phishdestroy.io/domain/ldgorlive-web.pages.dev/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/ldgorlive-web.pages.dev/ Last updated: 2026-04-01