lejjar-live-desktop[.]pages[.]dev
“LedgerLiveDesktop.com — Secure Crypto Management App”
lejjar-live-desktop.pages.dev — Contenu indisponible. Usurpation de l'identité de la marque : Ledger; Type d'arnaque : Brand Impersonation. Résumé des preuves: VirusTotal 4/94 (Fortinet, Kaspersky, LevelBlue, Sophos); PhishDestroy score 67/100. Bureau d’enregistrement: Cloudflare.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
PhishDestroy identifies the active domain lejjar-live-desktop.pages.dev as a generic phishing page impersonating a widely used desktop service. The page was flagged under unique seed 04c6ba and is classified as an under-investigation threat. Initial analysis suggests a credential-harvesting scheme targeting users who may confuse the Cloudflare Pages URL with an official service. No known drainer kit signatures were detected during the first assessment, but the page’s behavior aligns with common web-based credential theft campaigns.
Technical indicators confirm the following: the domain resolves to IP address 188.114.97.3 and is registered through Cloudflare, Inc. VirusTotal scans currently show 4 out of 95 detection engines flagging the page, indicating it remains under the radar of most security platforms as of analysis time. The domain utilizes a Google Trust Services SSL certificate, enhancing its appearance of legitimacy. While the exact creation date is not provided in available telemetry, the domain is confirmed active and serving content. It is not currently blocked by Google Safe Browsing (GSB) nor appear on major public blocklists, leaving users directly exposed.
The domain status is active and under investigation, with no confirmed takedown or blocking implemented by hosting or registrar at this time. PhishDestroy recommends users avoid accessing lejjar-live-desktop.pages.dev and treat any login prompts as highly suspicious. Organizations are advised to block the IP 188.114.97.3 and monitor for outbound connections to this address. Remaining risk is moderate due to low detection rates and absence of active blocking, highlighting the need for heightened user vigilance and immediate reporting of any encountered samples. Users should verify URLs carefully, use multi-factor authentication, and consult official sources before entering credentials.
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Analyse forensique
Technologies · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of lejjar-live-desktop.pages.dev · checked Mar 25, 2026
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif