MALICIOUS — CRITICAL
eng-ledgrlivee[.]pages[.]dev
PhishDestroy identifies eng-ledgrlivee.pages.dev as an active brand impersonation domain targeting Ledger users.
- VirusTotal
- 10/94
- Blocklists
- No stored match
- Disponibilità
- Raggiungibile · accesso limitato · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
eng-ledgrlivee.pages.dev — Raggiungibile · accesso limitato (HTTP 403). Simulazione del marchio: Ledger; Tipo di truffa: Brand Impersonation. Riepilogo delle prove: VirusTotal 10/94 (BitDefender, CyRadar, ESET, Emsisoft, Fortinet); URLScan malicious verdict; PhishDestroy score 85/100. Registrar: Cloudflare.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Analysis
PhishDestroy identifies eng-ledgrlivee.pages.dev as an active brand impersonation domain targeting Ledger users. This fraudulent site is designed to mimic the official Ledger platform, potentially deploying cryptocurrency drainer kits to siphon digital assets from unsuspecting victims. The domain operates under Cloudflare's infrastructure and resolves to a suspicious IP address, indicating a coordinated effort to deceive users through lookalike branding and social engineering tactics.
Technical analysis of eng-ledgrlivee.pages.dev reveals critical indicators of fraud. The domain currently shows 0 detections out of 95 on VirusTotal, suggesting it remains undetected by many security vendors. It was registered through Cloudflare, Inc., with an SSL certificate issued by Google Trust Services, which may be leveraged to establish false trust. The domain resolves to IP 188.114.96.3, a known malicious infrastructure point. While the exact creation date is not publicly available, the absence of detections and the deployment of SSL encryption imply recent activation. The domain remains unblocked across major security databases, including Google Safe Browsing, posing an elevated risk to users seeking legitimate Ledger services.
As of the latest assessment, eng-ledgrlivee.pages.dev remains an active threat under investigation, with a status classified as 'under_investigation'. PhishDestroy has flagged this domain for brand impersonation and is monitoring its activities closely. Users are strongly advised to cross-reference this domain with official sources and avoid interacting with any suspicious links. The risk level is currently assessed as elevated pending further forensic analysis. Immediate action should be taken to block this domain at the network and endpoint levels to prevent financial loss. This domain exemplifies the growing trend of sophisticated brand impersonation attacks targeting cryptocurrency holders.
Copertura dei dati12 recorded checks
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Informazioni forensi
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of eng-ledgrlivee.pages.dev · checked Apr 9, 2026
Dati e relazioni esterneIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.