en-us-live-legre[.]pages[.]dev
“Ledger Live — Secure Crypto App (Presentation)”
en-us-live-legre.pages.dev — Контент недоступний. Уособлення бренду: Apple; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 3/94 (ADMINUSLabs, Fortinet, LevelBlue); URLScan malicious verdict; PhishDestroy score 65/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies en-us-live-legre.pages.dev as a recently activated domain involved in a generic phishing campaign, currently under investigation for mimicking legitimate service pages. This domain, hosted on Cloudflare Pages, leverages deceptive subdomain naming (en-us-live-legre) to masquerade as localized or official-looking content, a common tactic in credential harvesting operations. While the specific brand being impersonated remains unverified in current feeds, the structure suggests potential targeting of tech or financial service users, consistent with drainer kit deployments observed in similar campaigns.
Technical analysis of en-us-live-legre.pages.dev reveals critical indicators: the domain shows zero detections across 95 VirusTotal engines, maintains a valid SSL certificate issued by Google Trust Services, and resolves to IP 188.114.97.3. Registered through Cloudflare, Inc., the domain’s age and reputation metrics are currently neutral, with no presence on major blocklists at the time of analysis. This combination of low detection rates, recent infrastructure, and clean reputation highlights the stealthy nature of the threat, emphasizing the need for proactive monitoring of emerging domains.
The domain remains active with an 'under_investigation' status, indicating ongoing analysis by threat intelligence teams. Organizations are advised to block traffic to 188.114.97.3 and flag en-us-live-legre.pages.dev at network perimeters. While the immediate risk is categorized as investigatory due to low detection rates, the lack of historical data and SSL validation by a trusted CA suggests potential for escalation. Users should exercise caution when encountering pages hosted on this domain, verify URLs out-of-band, and report any interactions to security teams. Remaining risk hinges on the domain’s pivot toward recognizable brands or the activation of additional infrastructure.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of en-us-live-legre.pages.dev · checked Apr 6, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога