ledger-desktop-en-us[.]pages[.]dev
“Ledger® Live: Login | Getting started™ with Ledger”
ledger-desktop-en-us.pages.dev — المحتوى غير متوفر. انتحال العلامة التجارية: Ledger; نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 13/94 (BitDefender, CyRadar, ESET, Emsisoft, Fortinet); URLScan malicious verdict; PhishDestroy score 94/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain, ledger-desktop-en-us.pages.dev, poses a targeted brand impersonation threat designed to deceive users into disclosing sensitive credentials associated with Ledger hardware wallet accounts. The page mimics the official Ledger Live login interface, presenting a fraudulent portal titled 'Ledger® Live: Login | Getting started™ with Ledger.' Such infrastructure is commonly leveraged in crypto drainer schemes, where victims are tricked into entering recovery phrases or private keys, enabling unauthorized access to cryptocurrency wallets and subsequent asset theft. The use of brand-specific terminology and visual design elements increases the likelihood of successful social engineering, particularly among users unfamiliar with official domain structures or security best practices. Analysis of the domain reveals multiple technical indicators corroborating its malicious nature. The domain was registered on April 09, 2026, through Cloudflare, Inc., a registrar frequently exploited for rapid deployment of phishing infrastructure. Security vendors on VirusTotal flag the domain at a rate of 14 out of 95, indicating moderate consensus regarding its malicious intent. The domain resolves to the IP address 188.114.97.3 and employs an SSL certificate issued by Google Trust Services, which, while providing encryption, does not validate the legitimacy of the site. Gridinsoft assigns the domain a trust score of 0 out of 100, and it appears on one security blocklist, further confirming its classification as a phishing endpoint. Users who have visited ledger-desktop-en-us.pages.dev or entered credentials on the site should assume their account information has been compromised. Immediate actions include revoking access to any linked wallets, generating new recovery phrases, and transferring assets to a secure, unrelated wallet. It is critical to monitor all associated accounts for unauthorized transactions and enable multi-factor authentication where available. Additionally, users should report the domain to their security software provider and consider filing a complaint with relevant cybercrime authorities. To prevent future incidents, users are advised to verify domain authenticity by cross-referencing official communications and using bookmarked links to access legitimate services.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of ledger-desktop-en-us.pages.dev · checked Jun 26, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب