lej-er-live-desktop-en[.]pages[.]dev
“Ledger Live Wallet – Step-by-Step Setup Guide for Windows, Mac”
lej-er-live-desktop-en.pages.dev — Doğrulanmamış. Marka kimliğine bürünme: Ledger; Dolandırıcılık türü: Brand Impersonation. Kanıt özeti: VirusTotal 13/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, ESET, Emsisoft); URLScan malicious verdict; PhishDestroy score 94/100. Kayıt kuruluşu: Cloudflare.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
PhishDestroy identifies lej-er-live-desktop-en.pages.dev as an active crypto drainer phishing domain currently under investigation by threat intelligence teams. The landing page impersonates a legitimate service to trick users into connecting their cryptocurrency wallets, enabling unauthorized asset transfers. Based on telemetry, this domain is part of a campaign targeting desktop users through deceptive page structures and social engineering prompts.
This domain was flagged with a risk level of under_investigation despite zero detections on VirusTotal at the time of analysis (7/95 engines). It resolves to IP address 188.114.96.3 and is served through Cloudflare’s infrastructure, leveraging Google Trust Services for an SSL certificate to appear legitimate. While no blocklist inclusion or creation date is publicly documented, the combination of Cloudflare hosting, Google-issued SSL, and the pages.dev subdomain pattern suggests a recent deployment aimed at evading detection. The absence of detections indicates the campaign may be in early stages or using novel evasion techniques.
Users should refrain from connecting any cryptocurrency wallet or entering sensitive information on this domain. Enable wallet-level transaction alerts and review connected apps regularly. Block the IP 188.114.96.3 at the network level if feasible. Report this domain to PhishDestroy using the unique seed ddc61c for ongoing monitoring and community protection. Avoid clicking links in unsolicited messages referencing this domain.
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of lej-er-live-desktop-en.pages.dev · checked Mar 25, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin