suport-ledger-live-donload[.]pages[.]dev
“Ledger Live Download – The Official and Secure App”
suport-ledger-live-donload.pages.dev — المحتوى غير متوفر. انتحال العلامة التجارية: Ledger; نوع الاحتيال: Crypto Scam. ملخص الأدلة: VirusTotal 10/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, Fortinet); URLScan malicious verdict; PhishDestroy score 85/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
The domain suport-ledger-live-donload.pages.dev was registered on March 23, 2026 and is hosted on Cloudflare's network (IP 172.66.44.99, located in Canada). The site resolves to Cloudflare's edge with HSTS and HTTP/3 enabled, and presents a TLS certificate issued by Google Trust Services under the WE1 root. An HTTP 403 response was observed, indicating the content is currently inaccessible. The page title retrieved from the site, “Ledger Live Download – The Official and Secure App”, explicitly references Ledger’s official software, matching the declared brand target “Ledger” and the classified scam type “Crypto Scam”.
VirusTotal scans report ten of ninety‑four antivirus engines flagging the domain as malicious, and the domain is listed on PhishDestroy as well as one additional security blocklist. Gridinsoft assigns a trust score of zero out of one hundred, reinforcing the malicious assessment. Nameservers are cosmin.ns.cloudflare.com and tina.ns.cloudflare.com, both belonging to Cloudflare. The site is presently offline, having been taken down, but the infrastructure artifacts remain observable.
The available evidence confirms that the domain was purpose‑built to impersonate Ledger’s Live application and to lure cryptocurrency users. No further content analysis was possible due to the 403 response, so the exact landing page structure, credential‑capture mechanisms, or additional payloads remain unknown. Defenders should continue to block the domain at DNS and network layers, monitor for any re‑registration attempts on the same sub‑domain pattern, and update endpoint protection signatures to include the observed VirusTotal detections. Incident response teams encountering traffic to this domain should treat it as a high‑confidence crypto‑related phishing indicator and correlate it with any Ledger credential theft alerts.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
الاستخبارات الجنائية الرقمية
التقنيات · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of suport-ledger-live-donload.pages.dev · checked Mar 30, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب