official-live-leadger[.]pages[.]dev
“Ledger Live — Secure Crypto Management App”
ملخص الأدلة
PhishDestroy identifies official-live-leadger.pages.dev as an active crypto wallet drainer phishing domain mimicking Ledger Live. Hosted on Cloudflare Pages under a Google Trust Services SSL certificate, this site masquerades as a legitimate ‘official’ Ledger service to trick users into connecting crypto wallets and approving malicious token approval transactions. The domain exhibits classic drainer behaviors, including redirect chains and simulated transaction approvals that silently transfer crypto assets to attacker-controlled wallets. This particular seed has been associated with several recent phishing campaigns targeting cryptocurrency users across Discord and Telegram channels.
This domain was registered through Cloudflare, Inc., and currently resolves to IP 188.114.97.3. PhishDestroy’s telemetry shows it carries a VirusTotal detection score of 2 out of 95 security vendors, indicating strong evasion against traditional signature-based defenses. The SSL certificate was issued by Google Trust Services, and the domain is not currently blocked by Google Safe Browsing as of the latest scan. While the domain appears to have been created recently, its infrastructure leverages reputable hosting and SSL services to bypass early detection filters.
official-live-leadger.pages.dev remains active as of the last scan and continues to serve phishing content through dynamic IP rotation and content delivery via Cloudflare. Security teams are advised to block this domain at the DNS and network level using IP 188.114.97.3 and the FQDN official-live-leadger.pages.dev. Users should avoid interacting with links or advertisements referencing ‘Ledger Live’ outside of official channels (ledger.com). This threat is considered elevated due to successful phishing bypasses and the potential loss of digital assets. Full indicator list and IOCs are available in the associated threat report.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 13/08/2026
التقنيات
حُدّدت ٣ تقنيات عالية الثقة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of official-live-leadger.pages.dev · checked May 1, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب