ledgr-live-usa[.]pages[.]dev
“Ledger® Live:| Getting started™ with Ledger®”
ledgr-live-usa.pages.dev — असत्यापित. ब्रांड प्रतिरूपण: Ledger; घोटाले का प्रकार: Brand Impersonation. साक्ष्य सारांश: VirusTotal 11/91 (alphaMountain.ai, BitDefender, CyRadar, Fortinet, G-Data); URLScan malicious verdict; Google Safe Browsing flagged; PhishDestroy score 88/100. रजिस्ट्रार: Cloudflare.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Domain ledgr-live-usa.pages.dev has been flagged for active brand impersonation targeting Ledger, a prominent hardware wallet manufacturer. This domain leverages a deceptive naming convention to mimic Ledger’s official services, likely as part of a credential harvesting campaign. While no drainer kit artifacts were identified in initial analysis, the domain’s structure and branding subterfuge strongly suggest a phishing operation designed to trick users into surrendering sensitive wallet-related information.
Technical indicators for this domain reveal a mix of reputable and suspicious characteristics. The domain resolves to IP address 172.66.45.36 and is served via a Google Trust Services SSL certificate, which may lend an air of legitimacy. However, VirusTotal analysis shows 0 detections out of 95 engines, indicating evasion of current detection signatures. Registered through Cloudflare, Inc., the domain was flagged by Google Safe Browsing under the category “SOCIAL_ENGINEERING,” confirming malicious intent. Despite these red flags, no blocklist entries were recorded at the time of discovery, underscoring the stealthy nature of this threat.
As of this advisory, the domain remains active and under investigation with a current risk level classified as “under_investigation.” Immediate containment actions include network-level blocking where feasible and user advisories to avoid interaction. While the SSL certificate and Cloudflare infrastructure complicate takedown efforts, the Google Safe Browsing flag provides a critical enforcement vector. Remaining risk is assessed as high due to the domain’s active status, low detection coverage, and the high-value target (Ledger users). Users are strongly advised to verify all URLs before entering credentials and to consult official Ledger communication channels for legitimate endpoints.
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
तकनीकें · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of ledgr-live-usa.pages.dev · checked Apr 15, 2026
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।