iledger-live[.]pages[.]dev
“Suspected Phishing | Cloudflare”
Kanıt özeti
Analysis as of July 29 2026 indicates that the subdomain iledger-live.pages.dev is actively used as a crypto drainer. The domain is hosted on Cloudflare’s Pages platform, as evidenced by the authoritative nameservers jade.ns.cloudflare.com and leif.ns.cloudflare.com. DNS resolution points to the IP address 188.114.96.3, which belongs to Cloudflare’s edge network, providing fast global delivery and obscuring the underlying server location. Registration information shows the domain was provisioned through Cloudflare, Inc., a common choice for malicious actors seeking rapid deployment and built‑in DDoS mitigation.
The domain has been flagged by the security service PhishDestroy and currently appears on one external blocklist, confirming that defensive feeds are already aware of its malicious intent. VirusTotal scans report that 11 of 91 security vendors classify the domain as malicious, reinforcing the suspicion of illicit activity. The risk level is marked as elevated and the operational status is active, indicating ongoing exploitation attempts. No public SSL certificate details were provided, but Cloudflare typically issues a valid HTTPS certificate for pages.dev subdomains, which can give the appearance of legitimacy to unsuspecting victims.
Because the page title and content have not been publicly disclosed, the exact phishing lures or wallet address collection mechanisms remain unknown, but the classification as a crypto drainer suggests attempts to trick users into transferring cryptocurrency to attacker‑controlled wallets. Defenders should add iledger-live.pages.dev to DNS and URL filtering policies, monitor outbound connections to the associated IP address, and consider correlating any crypto‑related transaction logs with activity targeting this host. Continuous re‑evaluation is advised, as the underlying Cloudflare infrastructure can be re‑used for additional payloads or redirected to new malicious sites.
Data Coverage
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 10.08.2026
Tespit zaman çizelgesi
-
VirusTotal
0 → 11
-
Alan adı durumu
Erişilebilir → Erişilemiyor
Teknolojiler
3 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of iledger-live.pages.dev · checked Jul 29, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin