ledxerlive[.]pages[.]dev
Análisis de phishing y seguridad de ledxerlive.pages.dev
“Suspected Phishing | Cloudflare”
ledxerlive.pages.dev — Accesible · acceso restringido (HTTP 403). Suplantación de marca: Ledger; Tipo de estafa: Credential Phishing. Resumen de las pruebas: VirusTotal 8/91 (alphaMountain.ai, BitDefender, Emsisoft, Fortinet, G-Data); URLScan malicious verdict; PhishDestroy score 83/100. Registrador: Cloudflare.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
The domain ledxerlive.pages.dev was observed on July 29, 2026 as an active generic phishing infrastructure. Registration details show the domain is hosted through Cloudflare, Inc., using the authoritative nameservers sunny.ns.cloudflare.com and valentin.ns.cloudflare.com. DNS resolution points to the IPv4 address 188.114.97.3. The domain is listed on a single security blocklist and is explicitly blocked by the PhishDestroy service, indicating that at least one reputable anti‑phishing feed has flagged it. The risk level is elevated, reflecting the combination of active operation and multiple vendor detections.
VirusTotal analysis recorded eight positive detections out of ninety‑one submitted security engines, confirming that multiple independent scanners have identified malicious behavior associated with the domain. The elevated risk rating reflects the combination of active status, blocklist presence, and multi‑vendor detections.
No additional contextual data such as SSL certificate details, HTTP response codes, page title, or brand targeting were available at the time of analysis, so the exact payload or credential‑stealing mechanism remains unknown. The lack of public intelligence on the hosted content prevents a deeper attribution of the campaign’s objectives beyond the generic phishing classification.
Defenders should add ledxerlive.pages.dev to local deny lists, enforce DNS‑based blocking, and monitor outbound traffic for connections to 188.114.97.3. Correlation of endpoint alerts that reference the domain or its IP with the eight VirusTotal detections can help prioritize remediation. Continuous re‑evaluation is recommended, as further intelligence such as page content or additional blocklist listings may emerge. The use of Cloudflare’s edge network may obscure the true origin server, complicating takedown efforts.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Tecnologías · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100 % de confianzaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100 % de confianzaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % de confianzaAnálisis de VirusTotal
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of ledxerlive.pages.dev · checked Jul 29, 2026
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.