legar-live-dwld[.]pages[.]dev
“Suspected Phishing | Cloudflare”
legar-live-dwld.pages.dev — Conteúdo indisponível. Resumo das evidências: VirusTotal 5/91 (alphaMountain.ai, BitDefender, Fortinet, G-Data, Sophos); PhishDestroy score 65/100. Registrador: Cloudflare.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
On 29 July 2026 the domain legar-live-dwld.pages.dev was observed in active generic phishing campaigns. The domain is hosted on Cloudflare’s network, using the nameservers kinsley.ns.cloudflare.com and kurt.ns.cloudflare.com, and resolves to the IP address 188.114.96.3. Registration information indicates the domain was provisioned through Cloudflare, Inc., confirming the use of a reputable DNS provider to obscure the true operator. VirusTotal analysis shows that five of ninety‑one scanning engines have flagged the domain as malicious, providing modest but notable detection consensus.
The domain is currently listed on one public security blocklist and is actively blocked by the PhishDestroy service, demonstrating that at least one dedicated anti‑phishing platform has incorporated it into its protection feed. No public page title, SSL certificate details, HTTP response codes, or Safe Browsing verdicts are available in the current intelligence set, leaving the exact content and credential‑capture mechanisms unverified. Likewise, Open Threat Exchange references are absent, and no additional threat‑intel sources have published indicators of compromise beyond the blocklist entry.
Consequently, the precise target brand or lure employed by the site cannot be confirmed at this time. Defenders should add the IP address 188.114.96.3 and the full domain name to DNS and proxy block policies, monitor for any outbound connections to the listed nameservers, and ensure that endpoint protection solutions ingest the VirusTotal detection count. Continuous re‑evaluation of the domain’s status is recommended, as further analysis may reveal additional malicious attributes such as malicious payloads or credential‑harvesting forms.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% de confiançaAnálise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of legar-live-dwld.pages.dev · checked Jul 29, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo