MALICIOUS — CRITICAL
desktop-as-live[.]pages[.]dev
PhishDestroy identifies desktop-as-live.pages.dev as a generic phishing domain active since seed 7649d6, impersonating desktop live streaming services to harvest user credentials.
- VirusTotal
- 12/91
- Blocklists
- No stored match
- Kullanılabilirlik
- Ulaşılabilir · erişim kısıtlı · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
desktop-as-live.pages.dev — Ulaşılabilir · erişim kısıtlı (HTTP 403). Marka kimliğine bürünme: Ledger; Dolandırıcılık türü: Brand Impersonation. Kanıt özeti: VirusTotal 12/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, Emsisoft); URLScan malicious verdict; PhishDestroy score 91/100. Kayıt kuruluşu: Cloudflare.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Evidence Analysis
PhishDestroy identifies desktop-as-live.pages.dev as a generic phishing domain active since seed 7649d6, impersonating desktop live streaming services to harvest user credentials. The domain employs a deceptive naming pattern to mimic legitimate streaming platforms, tricking users into entering sensitive login details under false pretenses. No specific drainer kit or spoofed brand has been confirmed in initial analysis, but the threat type remains classified as generic phishing due to the domain's purpose and structure.
This domain was flagged with a VirusTotal detection score of 12/95, indicating no security vendors currently recognize it as malicious. It was registered through Cloudflare, Inc. and resolves to the IP address 188.114.96.3, which is associated with Cloudflare's infrastructure. The domain utilizes a Google Trust Services SSL certificate, adding a false layer of legitimacy. Creation date and Google Safe Browsing (GSB) status remain unverified at this time, but the lack of detections suggests it is either newly deployed or highly evasive.
The domain remains active with an under investigation risk status, meaning further analysis is required to confirm long-term malicious intent or additional payloads. Users should avoid interacting with desktop-as-live.pages.dev entirely, as it poses a direct credential theft risk. Security teams are advised to monitor this domain for changes in infrastructure, SSL certificates, or associated IP blocks. Remaining risk is moderate due to the domain's active status and low detection rate, warranting continued observation until a definitive threat classification is established.
Veri kapsamı12 recorded checks
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org %100 güvenCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of desktop-as-live.pages.dev · checked May 1, 2026
Kanıtlar ve Dış RaporlarIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.