iledger-live[.]pages[.]dev
Перевірка домену iledger-live.pages.dev на фішинг і безпеку
“Suspected Phishing | Cloudflare”
iledger-live.pages.dev — Доступно · доступ обмежено (HTTP 403). Уособлення бренду: Ledger; Тип шахрайства: Crypto Drainer. Зведення доказів: VirusTotal 11/91 (alphaMountain.ai, BitDefender, CyRadar, Emsisoft, Fortinet); URLScan malicious verdict; PhishDestroy score 93/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis as of July 29 2026 indicates that the subdomain iledger-live.pages.dev is actively used as a crypto drainer. The domain is hosted on Cloudflare’s Pages platform, as evidenced by the authoritative nameservers jade.ns.cloudflare.com and leif.ns.cloudflare.com. DNS resolution points to the IP address 188.114.96.3, which belongs to Cloudflare’s edge network, providing fast global delivery and obscuring the underlying server location. Registration information shows the domain was provisioned through Cloudflare, Inc., a common choice for malicious actors seeking rapid deployment and built‑in DDoS mitigation.
The domain has been flagged by the security service PhishDestroy and currently appears on one external blocklist, confirming that defensive feeds are already aware of its malicious intent. VirusTotal scans report that 11 of 91 security vendors classify the domain as malicious, reinforcing the suspicion of illicit activity. The risk level is marked as elevated and the operational status is active, indicating ongoing exploitation attempts. No public SSL certificate details were provided, but Cloudflare typically issues a valid HTTPS certificate for pages.dev subdomains, which can give the appearance of legitimacy to unsuspecting victims.
Because the page title and content have not been publicly disclosed, the exact phishing lures or wallet address collection mechanisms remain unknown, but the classification as a crypto drainer suggests attempts to trick users into transferring cryptocurrency to attacker‑controlled wallets. Defenders should add iledger-live.pages.dev to DNS and URL filtering policies, monitor outbound connections to the associated IP address, and consider correlating any crypto‑related transaction logs with activity targeting this host. Continuous re‑evaluation is advised, as the underlying Cloudflare infrastructure can be re‑used for additional payloads or redirected to new malicious sites.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of iledger-live.pages.dev · checked Jul 29, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога