MALICIOUS — HIGH
web-ledgr-desktop[.]pages[.]dev
The phishing domain web-ledgr-desktop.pages.dev impersonates the cryptocurrency wallet brand Ledger.
- VirusTotal
- 3/91
- Blocklists
- No stored match
- Ketersediaan
- Dapat dijangkau · akses dibatasi · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
web-ledgr-desktop.pages.dev — Dapat dijangkau · akses dibatasi (HTTP 403). Peniruan identitas merek: Ledger; Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 3/91 (ADMINUSLabs, Kaspersky, LevelBlue); URLQuery 3 alerts; PhishDestroy score 65/100. Registrar: Cloudflare.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
The phishing domain web-ledgr-desktop.pages.dev impersonates the cryptocurrency wallet brand Ledger. It was first detected on 2026-05-06 and has since been taken offline. At the time of detection, 3 out of 91 vendors on VirusTotal flagged it as malicious, while it also appeared on one public blocklist, specifically PhishDestroy's.
This domain was registered through Cloudflare, Inc., and hosted on an IP address located in Canada, also managed by Cloudflare, Inc. The site used an SSL certificate issued by Google Trust Services, which is a common tactic to lend legitimacy to fraudulent sites. The domain's page title, "Ledger Live Desktop – Secure Crypto Portfolio," was designed to deceive users into believing they were accessing a legitimate Ledger service.
Phishing domains like web-ledgr-desktop.pages.dev exploit the critical time window between domain registration and the propagation of detection data to antivirus databases, which can take 24-72 hours. PhishDestroy's detection pipeline operates upstream of antivirus vendors, allowing it to capture such threats during this vulnerable period. Despite the domain's offline status, its initial activity underscores the need for continuous monitoring and rapid response to emerging threats.
Cakupan data12 recorded checks
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | web-ledgr-desktop.pages.dev |
malicious | Sinkholed |
| OpenDNS | web-ledgr-desktop.pages.dev |
phishing | Phishing Block |
| DNS4EU | web-ledgr-desktop.pages.dev |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Teknologi · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Keyakinan 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Keyakinan 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Keyakinan 100%Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of web-ledgr-desktop.pages.dev · checked May 6, 2026
Bukti & Laporan EksternalIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.