app-lezorlive-eng[.]pages[.]dev
“Ledger Live App — Mobile Companion & Secure Wallet | Ledger”
Kaydedilmiş gözlem
Gözlemlenen başlık farkı
Kanıt özeti
PhishDestroy identifies active credential phishing infrastructure hosted at the domain app-lezorlive-eng.pages.dev, a fraudulent page designed to harvest user credentials under the guise of a legitimate service. The threat is categorized as a generic phishing campaign deployed via Cloudflare Pages, leveraging deceptive branding to trick users into entering sensitive login information. No specific drainer kit or targeted brand affiliation has been confirmed at this stage of the investigation, though the payload and campaign tactics align with standard credential harvesting operations.
Technical indicators linked to this domain include a low detection score of 1/95 on VirusTotal, a registration facilitated through Cloudflare, Inc., and hosting on IP 172.66.44.101. The domain utilizes a Google Trust Services SSL certificate, suggesting an attempt to appear legitimate. Cloudflare’s infrastructure, while commonly abused for phishing, masks the true origin of the threat actor. The domain was created recently, though the exact creation date is not publicly disclosed in current records. The domain remains unlisted on major blocklists as of the latest scan, indicating it is newly active and may continue to evade detection for some time.
The campaign is currently active and under investigation, with no immediate blocklist integration or takedown action noted. Despite its low VT detection rate, users interacting with this domain risk immediate credential compromise. PhishDestroy recommends immediate avoidance of the domain, network-level blocking of the associated IP and domain, and heightened scrutiny of any login prompts linked to this infrastructure. Remaining risk is assessed as significant due to active deployment, low detection scores, and the absence of preventative controls in the broader threat intelligence ecosystem.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
Topluluk raporları
1 topluluk üyesi tarafından bildirildi; ilk görülme 20.04.2026
- Kayıtlı raporlar
- 1
- Bildirilen benzersiz URL’ler
- 1
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of app-lezorlive-eng.pages.dev · checked Apr 20, 2026
Benzer alan adları
151 kayıtlı benzer alan adı
Tümünü göster (88)
151 kaydın 100 kadarı gösteriliyor
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin