official-desktop-ledgger[.]framer[.]ai
“Ledger Live Desktop® – Smart Crypto Tracking & Security”
official-desktop-ledgger.framer.ai — Contenu indisponible. Usurpation de l'identité de la marque : Ledger; Type d'arnaque : Crypto Scam. Résumé des preuves: VirusTotal 0 detections (engine total unavailable); URLScan malicious verdict; PhishDestroy score 45/100. Bureau d’enregistrement: CSC.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain official-desktop-ledgger.framer.ai was registered on January 06, 2018 through CSC Corporate Domains, Inc. and resolves to the Amazon Web Services address 52.223.52.2, belonging to AS16509 Amazon.com, Inc. The hosting location is the United States. DNS resolution is provided by four Amazon name servers (ns-114.awsdns-14.com, ns-1198.awsdns-21.org, ns-1902.awsdns-45.co.uk, ns-635.awsdns). An SSL certificate issued by Let’s Encrypt (E8) secures the site, and the server advertises HSTS and HTTP/3 support. Technology fingerprinting identifies the use of Framer Sites and the React framework.
The HTTP response for the root URL is a 404 status, and the domain is currently taken offline. The page title returned by the server is "Ledger Live Desktop® – Smart Crypto Tracking & Security," indicating an attempt to impersonate the Ledger brand. The infrastructure has been classified as a crypto‑related scam and appears on a single security blocklist, PhishDestroy. VirusTotal analysis shows scans from 95 vendors with no detections, though the absence of flags does not constitute a safety guarantee.
No additional public threat‑intel sources (e.g., OTX, Safe Browsing) are cited in the available data. Defenders should continue to block the domain at perimeter filters, monitor for any re‑activation, and consider adding the domain to internal deny lists. Because the site is offline, dynamic analysis is not possible; however, the combination of brand‑specific page title, use of a reputable CDN, and the presence on a phishing blocklist suggests a deliberate impersonation campaign targeting Ledger users. Organizations that rely on Ledger services should educate users about the risk of unsolicited links and reinforce verification of legitimate Ledger URLs before entering credentials or installing software.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Technologies · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com Confiance à 100 %React is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org Confiance à 100 %HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confiance à 100 %HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confiance à 100 %Analyse VirusTotal
Preuves archivées
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif