MALICIOUS — CRITICAL
فحص التصيد والأمان للنطاق live-ledgr-web.pages.dev
live-ledgr-web[.]
PhishDestroy identifies live-ledgr-web.pages.dev as an active phishing site impersonating Ledger’s official login portal to steal cryptocurrency wallet credentials.
- VirusTotal
- 4/91
- Blocklists
- No stored match
- التوفر
- آخر نشاط معروف · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
live-ledgr-web.pages.dev — آخر نشاط معروف (HTTP 200). انتحال العلامة التجارية: Ledger; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 4/91 (alphaMountain.ai, Fortinet, LevelBlue, Sophos); PhishDestroy score 77/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
PhishDestroy identifies live-ledgr-web.pages.dev as an active phishing site impersonating Ledger’s official login portal to steal cryptocurrency wallet credentials. This domain is hosted on Cloudflare’s pages.dev service at IP 188.114.96.3 and leverages a Google Trust Services SSL certificate to appear legitimate. The site is engineered to deceive visitors into submitting their 24-word seed phrases or private keys under the guise of account verification or recovery. This domain was flagged through automated detection pipelines and manual analysis, revealing no detections on VirusTotal as of initial inspection. Research indicates the domain was configured through Cloudflare’s registrar, a common tactic among phishing actors to obfuscate hosting origins and evade takedowns. The SSL certificate issued by Google Trust Services further enhances its deceptive appearance, exploiting user trust in HTTPS indicators. Technical analysis shows the page mimics Ledger Live’s web interface with near-identical styling and domain structure, a hallmark of advanced phishing campaigns targeting crypto holders. If you visited this site, cease using any credentials or seed phrases entered immediately and transfer funds from affected wallets to a new, secure wallet. Scan your device for malware using tools like Malwarebytes or Windows Defender, as phishing pages often deploy keyloggers or clipboard hijackers. Report the domain to PhishDestroy and your wallet provider, and disable any browser extensions that may have intercepted your sensitive data. Always verify URLs by typing them manually or using official Ledger channels before entering sensitive information.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
نطاق تغطية البيانات12 recorded checks
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org ثقة 100٪Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of live-ledgr-web.pages.dev · checked May 1, 2026
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.