ledger-eng-faq[.]pages[.]dev
“Ledger Wallet - Hardware Crypto Wallet | Ledger Live Portfolio …”
Pengamatan tersimpan
Perbedaan judul yang diamati
Ringkasan bukti
This domain, ledger-eng-faq.pages.dev, poses a brand impersonation threat targeting users of Ledger hardware crypto wallets. The site mimics the official Ledger interface, presenting itself as a legitimate portal for Ledger Live Portfolio management. Visitors are likely to encounter fake login prompts, software update requests, or wallet synchronization pages designed to harvest credentials, private keys, or seed phrases. Given the domain's focus on cryptocurrency hardware, the risk extends beyond credential theft to potential crypto asset drainage if users input sensitive wallet information. The site may also distribute malicious software disguised as official Ledger applications or firmware updates, further compromising user security. Analysis indicates the domain was registered on April 14, 2026, through Cloudflare, Inc., a registrar commonly used for both legitimate and malicious purposes. As of the latest scan, 2 out of 95 security vendors on VirusTotal flagged the domain as malicious, while it appears on one security blocklist. The domain resolves to the IP address 172.66.47.25 and employs Cloudflare's infrastructure, including HTTP/3 and HSTS, which are often leveraged to obfuscate malicious activity behind legitimate CDN services. The SSL certificate is issued by Google Trust Services, adding a layer of apparent legitimacy. The use of Tailwind CSS suggests an attempt to replicate the visual design of the official Ledger site, increasing the likelihood of successful deception. Users who visited ledger-eng-faq.pages.dev should assume their interactions were monitored and any entered information was compromised. Immediately revoke access to any connected crypto wallets and generate new seed phrases if credentials or private keys were shared. Scan the device used to access the site with updated security tools to detect potential malware. Monitor all linked accounts, including email and crypto exchanges, for unauthorized activity. Report the incident to the legitimate Ledger support team and relevant cybersecurity organizations to aid in tracking and mitigating the threat. Avoid interacting with any unsolicited communications claiming to be from Ledger, as these may be follow-up phishing attempts.
Data Coverage
Intelijen Keamanan Jaringan
Alur Tanggapan Ancaman Pipeline
Cakupan daftar blokir
10 sumber eksternal dipantau · snapshot tersimpan 11/08/2026
Linimasa deteksi
-
VirusTotal
2 → 0
Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of ledger-eng-faq.pages.dev · checked Jun 26, 2026
Analisis Konfigurasi Situs
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive