ledgerliveapp[.]us
Analyse phishing et sécurité de ledgerliveapp.us
“Ledger Live - Download Official Ledger Live App”
ledgerliveapp.us — Masqué · accessible (HTTP 502). Usurpation de l'identité de la marque : Ledger; Type d'arnaque : Brand Impersonation. Résumé des preuves: VirusTotal 8/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, ESET, Fortinet); URLQuery 1 alert; Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 78/100. Bureau d’enregistrement: Hosting Concepts.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
This domain, ledgerliveapp.us, is actively impersonating the official Ledger Live application platform to conduct credential harvesting attacks targeting cryptocurrency wallet users. The site presents a fraudulent download page titled 'Ledger Live - Download Official Ledger Live App,' designed to deceive users into entering sensitive wallet credentials, recovery phrases, or installing malicious software under the guise of legitimate Ledger software. The threat specifically exploits trust in the Ledger brand to facilitate unauthorized access to cryptocurrency assets, with potential for direct financial theft or subsequent malware deployment. Analysis indicates the domain was registered on April 08, 2026, through Hosting Concepts B.V. d/b/a Registrar.eu, and resolves to IP address 43.174.246.23, hosted on autonomous system AS139341 in Singapore. The infrastructure lacks basic security measures, including the absence of an SSL certificate, increasing exposure to man-in-the-middle interception. Security vendor detection is significant, with 8 out of 95 engines on VirusTotal flagging the domain as malicious. The domain appears on three independent security blocklists and is actively blocked by multiple threat intelligence feeds, including PhishDestroy, MetaMask, and SEAL. Users who have visited ledgerliveapp.us or interacted with its content should immediately cease all engagement and assume credential compromise. Any entered recovery phrases, passwords, or private keys must be considered exposed and invalidated. Affected users should transfer assets from potentially compromised wallets to new, secure wallets using a clean device. System scans for malware are recommended, particularly for any downloaded files from the domain. Ledger users are advised to verify application authenticity exclusively through the official ledger.com domain and enable multi-factor authentication where available. Monitoring for unauthorized transactions and reporting the incident to relevant cryptocurrency security resources is strongly advised.
Renseignements sur la sécurité réseau
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | ledgerliveapp.us |
malicious | Sinkholed |
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Analyse VirusTotal
Données factuelles et rapports externes
PD-20260601-0E2FF3 Recipient: as139341_abuse@aceville.net Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif