MALICIOUS — CRITICAL
support-live-faqs[.]pages[.]dev
12 of 91 security engines flagged the domain; the latest stored check returned HTTP 403.
- VirusTotal
- 12/91
- Blocklists
- No stored match
- 可用性
- 可达 · 访问受限 · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
support-live-faqs.pages.dev — 可达 · 访问受限 (HTTP 403). 品牌冒充:Ledger. 证据摘要: VirusTotal 12/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET); URLScan malicious verdict; PhishDestroy score 93/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Evidence Digest
support-live-faqs.pages.dev is classified critical with an evidence score of 93/100. 12 of 91 security engines flagged the domain. Registration metadata recorded via Cloudflare, Inc., hosted on 172.66.44.230 (Cloudflare, Inc., CA). The latest stored check on 9 Aug 2026 returned HTTP 403 and includes a capture.
Stored generated summary (templated)cerebras · 2026年7月29日
Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.
Support-live-faqs.pages.dev is flagged as a generic phishing site. The domain is delegated to Cloudflare’s name servers carl.ns.cloudflare.com and clara.ns.cloudflare.com and resolves to the Cloudflare edge address 172.66.44.230. Registration through Cloudflare, Inc. obscures registrant details, a common tactic for malicious operators seeking to hide attribution. The domain appears on a security blocklist and has been identified by PhishDestroy as an active phishing vector.
VirusTotal analysis shows that 12 of 91 scanned security vendors label the domain as malicious, providing independent corroboration of the risk. The concentration of detections across multiple vendors suggests that the site hosts or distributes phishing content, although the exact payload, page title, or SSL configuration has not been publicly disclosed. Consequently, defenders lack visibility into the specific landing page or credential‑harvesting mechanisms employed.
Given the confirmed presence on blocklists, the multi‑vendor VirusTotal detections, and the use of Cloudflare infrastructure that can mask origin servers, the domain should be treated as high‑confidence phishing. Defensive actions include adding the domain to URL filtering and DNS sinkhole policies, monitoring for outbound connections to the 172.66.44.230 address, and employing email gateway scanning to block messages that reference the domain. Continuous re‑evaluation is advised in case additional intelligence such as page content or SSL certificates becomes available.
数据覆盖范围12 recorded checks
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 置信度 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of support-live-faqs.pages.dev · checked Jul 29, 2026
证据与外部报告Independent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。