localedger-com[.]pages[.]dev
“LocaLedger — Personal Finance, Offline-First”
साक्ष्य सारांश
This domain, localedger-com.pages.dev, operates as an active brand impersonation phishing site targeting users of the Ledger hardware wallet ecosystem. Analysis indicates the site mimics legitimate Ledger services by presenting a deceptive interface titled 'LocaLedger — Personal Finance, Offline-First,' designed to harvest cryptocurrency wallet credentials and seed phrases. The threat actor employs social engineering tactics to trick victims into connecting their wallets, enabling unauthorized transactions and asset theft through crypto drainer scripts embedded in the page infrastructure. Infrastructure analysis reveals multiple technical indicators confirming malicious intent. The domain was registered through Cloudflare, Inc. on April 06, 2026, and currently resolves to the IP address 172.66.47.46, geolocated to California under Cloudflare's network. Security vendors have flagged the domain with 1 detection out of 95 on VirusTotal, while it appears on a single security blocklist. The site employs a Let's Encrypt SSL certificate (serial number E7) to present a false sense of legitimacy, a common tactic in phishing campaigns to evade user suspicion. Users who have visited localedger-com.pages.dev should immediately revoke any wallet connections made through the site and transfer assets to a new wallet using a clean device. It is critical to monitor all connected wallets for unauthorized transactions and update security configurations, including two-factor authentication and hardware wallet firmware. Victims should report the incident to relevant blockchain security teams and consider filing reports with cybercrime authorities to assist in tracking the campaign's infrastructure.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 10/08/2026
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of localedger-com.pages.dev · checked Apr 6, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।