app-lezorlive-eng[.]pages[.]dev
“Ledger Live App — Mobile Companion & Secure Wallet | Ledger”
Збережене спостереження
Зафіксована відмінність заголовків
Зведення доказів
PhishDestroy identifies active credential phishing infrastructure hosted at the domain app-lezorlive-eng.pages.dev, a fraudulent page designed to harvest user credentials under the guise of a legitimate service. The threat is categorized as a generic phishing campaign deployed via Cloudflare Pages, leveraging deceptive branding to trick users into entering sensitive login information. No specific drainer kit or targeted brand affiliation has been confirmed at this stage of the investigation, though the payload and campaign tactics align with standard credential harvesting operations.
Technical indicators linked to this domain include a low detection score of 1/95 on VirusTotal, a registration facilitated through Cloudflare, Inc., and hosting on IP 172.66.44.101. The domain utilizes a Google Trust Services SSL certificate, suggesting an attempt to appear legitimate. Cloudflare’s infrastructure, while commonly abused for phishing, masks the true origin of the threat actor. The domain was created recently, though the exact creation date is not publicly disclosed in current records. The domain remains unlisted on major blocklists as of the latest scan, indicating it is newly active and may continue to evade detection for some time.
The campaign is currently active and under investigation, with no immediate blocklist integration or takedown action noted. Despite its low VT detection rate, users interacting with this domain risk immediate credential compromise. PhishDestroy recommends immediate avoidance of the domain, network-level blocking of the associated IP and domain, and heightened scrutiny of any login prompts linked to this infrastructure. Remaining risk is assessed as significant due to active deployment, low detection scores, and the absence of preventative controls in the broader threat intelligence ecosystem.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 12.08.2026
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of app-lezorlive-eng.pages.dev · checked Apr 20, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога