ledger-eng-faq[.]pages[.]dev
“Ledger Wallet - Hardware Crypto Wallet | Ledger Live Portfolio …”
Osservazione memorizzata
Contrasto dei titoli osservato
Riepilogo delle prove
This domain, ledger-eng-faq.pages.dev, poses a brand impersonation threat targeting users of Ledger hardware crypto wallets. The site mimics the official Ledger interface, presenting itself as a legitimate portal for Ledger Live Portfolio management. Visitors are likely to encounter fake login prompts, software update requests, or wallet synchronization pages designed to harvest credentials, private keys, or seed phrases. Given the domain's focus on cryptocurrency hardware, the risk extends beyond credential theft to potential crypto asset drainage if users input sensitive wallet information. The site may also distribute malicious software disguised as official Ledger applications or firmware updates, further compromising user security. Analysis indicates the domain was registered on April 14, 2026, through Cloudflare, Inc., a registrar commonly used for both legitimate and malicious purposes. As of the latest scan, 2 out of 95 security vendors on VirusTotal flagged the domain as malicious, while it appears on one security blocklist. The domain resolves to the IP address 172.66.47.25 and employs Cloudflare's infrastructure, including HTTP/3 and HSTS, which are often leveraged to obfuscate malicious activity behind legitimate CDN services. The SSL certificate is issued by Google Trust Services, adding a layer of apparent legitimacy. The use of Tailwind CSS suggests an attempt to replicate the visual design of the official Ledger site, increasing the likelihood of successful deception. Users who visited ledger-eng-faq.pages.dev should assume their interactions were monitored and any entered information was compromised. Immediately revoke access to any connected crypto wallets and generate new seed phrases if credentials or private keys were shared. Scan the device used to access the site with updated security tools to detect potential malware. Monitor all linked accounts, including email and crypto exchanges, for unauthorized activity. Report the incident to the legitimate Ledger support team and relevant cybersecurity organizations to aid in tracking and mitigating the threat. Avoid interacting with any unsolicited communications claiming to be from Ledger, as these may be follow-up phishing attempts.
Data Coverage
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 10/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Cronologia del rilevamento
-
VirusTotal
2 → 0
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of ledger-eng-faq.pages.dev · checked Jun 26, 2026
Analisi della configurazione del sito
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo