MALICIOUS — CRITICAL
liveledgr-eng[.]pages[.]dev
This domain, liveledgr-eng.pages.dev, is actively engaged in brand impersonation targeting Ledger, a well-known cryptocurrency hardware wallet provider.
- VirusTotal
- 11/91
- Blocklists
- No stored match
- Ketersediaan
- Terakhir diketahui aktif · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
liveledgr-eng.pages.dev — Terakhir diketahui aktif (HTTP 200). Peniruan identitas merek: Ledger; Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 11/91 (alphaMountain.ai, BitDefender, CyRadar, Fortinet, G-Data); URLScan malicious verdict; PhishDestroy score 93/100. Registrar: Cloudflare.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
This domain, liveledgr-eng.pages.dev, is actively engaged in brand impersonation targeting Ledger, a well-known cryptocurrency hardware wallet provider. The specific threat type involves presenting a fraudulent interface designed to mimic Ledger Live, the official software for managing crypto assets. Analysis confirms the domain remains active and operational as of this assessment. Infrastructure analysis reveals multiple high-risk indicators. The domain is flagged by 8 of 95 security vendors on VirusTotal, indicating a significant detection rate. It resolves to the IP address 188.114.96.3, associated with Cloudflare, Inc., and is registered through the same provider. The domain was created on April 04, 2026, though this date may reflect a falsified registration record. The SSL certificate is issued by Google Trust Services (WE1), a common feature in both legitimate and malicious sites leveraging Cloudflare’s infrastructure. The domain appears on one security blocklist, further corroborating its malicious classification. Current status indicates the domain remains active, posing an ongoing risk to users attempting to access crypto management tools. Security teams are advised to block the domain and its resolving IP at the network level. Organizations should also monitor for references to liveledgr-eng.pages.dev in web logs or proxy data, as interactions may indicate successful credential harvesting attempts. End users should be alerted to verify domain authenticity before entering sensitive information, particularly when accessing crypto-related services. Additional scrutiny of domains leveraging Cloudflare Pages infrastructure with similar naming patterns is recommended to identify related threats.
Cakupan data12 recorded checks
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of liveledgr-eng.pages.dev · checked Apr 7, 2026
Bukti & Laporan EksternalIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.