MALICIOUS — CRITICAL
Проверка домена live-ldgrlive.pages.dev на фишинг и безопасность
live-ldgrlive[.]
PhishDestroy identifies domain live-ldgrlive.pages.dev as a credential-stealing phishing page impersonating a legitimate login portal.
- VirusTotal
- 7/91
- Blocklists
- No stored match
- Доступность
- Последний известный активный · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
live-ldgrlive.pages.dev — Последний известный активный (HTTP 200). Олицетворение бренда: Ledger; Тип мошенничества: Credential Phishing. Сводка доказательств: VirusTotal 7/91 (alphaMountain.ai, BitDefender, Fortinet, G-Data, Kaspersky); PhishDestroy score 86/100. Регистратор: Cloudflare.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Evidence Analysis
PhishDestroy identifies domain live-ldgrlive.pages.dev as a credential-stealing phishing page impersonating a legitimate login portal. Registered via Cloudflare, Inc., this domain leverages Cloudflare Pages to host a malicious page designed to harvest user credentials under the guise of authentic branding. The phishing kit has not yet been classified in open-source drainer databases but is actively serving malicious content targeting unsuspecting users.
Technical analysis reveals this domain resolves to IP 172.66.44.129 and is secured with a Google Trust Services SSL certificate, increasing its perceived legitimacy. At time of analysis, VirusTotal reports 0 detections out of 95 scanners, which is expected for a newly deployed threat. The domain is served through Cloudflare Pages and has not yet appeared on any major blocklists, leaving it in an early operational phase. WHOIS data indicates recent registration via Cloudflare, Inc., further aligning with known abuse patterns of this provider’s dynamic hosting services.
This domain remains active and under investigation. Users are advised not to interact with any links or content associated with live-ldgrlive.pages.dev. Security teams should immediately block the domain at the network perimeter and monitor endpoints for anomalous outbound connections to 172.66.44.129. Given the absence of detections on VirusTotal and lack of blocklist inclusion, the risk of successful compromise remains moderate until broader detection signatures are deployed and enforcement actions are taken. Remain vigilant for reports of credential theft linked to this domain.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Охват данных12 recorded checks
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of live-ldgrlive.pages.dev · checked Apr 29, 2026
Доказательства и внешние отчетыIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.