l-live-us-ledg[.]pages[.]dev
“Ledger Live - Secure Crypto App”
l-live-us-ledg.pages.dev — Conteúdo indisponível. Representação da marca: Ledger; Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 11/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, CyRadar, Emsisoft); PhishDestroy score 88/100. Registrador: Cloudflare.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
PhishDestroy identifies l-live-us-ledg.pages.dev as a high-risk brand-impersonation phishing domain actively targeting Ledger cryptocurrency users by masquerading as the official Ledger Live crypto app. This attack aims to trick victims into downloading malicious software or surrendering sensitive wallet credentials under the guise of a legitimate software update or account verification. The domain is designed to exploit brand trust, redirecting to a counterfeit interface that closely mimics Ledger’s official branding, colors, and layout to maximize user deception and credential harvesting success. This domain was flagged by PhishDestroy using seed 4de5a3. Threat intelligence confirms it resolves to IP 172.66.47.151 and is served via Cloudflare, Inc. with a Google Trust Services SSL certificate. VirusTotal analysis shows only 2 out of 95 security vendors currently detect this threat, indicating low detection coverage despite clear malicious intent. The phishing page displays the title 'Ledger Live - Secure Crypto App,' directly copying Ledger’s official branding. Since its deployment, the domain remains active and continues to evade widespread blocklisting, posing an ongoing risk to uninformed users seeking legitimate Ledger services. Users who visited l-live-us-ledg.pages.dev should immediately cease any interaction, avoid entering any credentials or seed phrases, and scan their devices using trusted antivirus software. If any sensitive information was entered, revoke permissions and reset Ledger accounts through the official ledger.com domain. Report the domain to your security team or PhishDestroy for inclusion in threat databases. Always verify URLs using official Ledger domains and enable multi-factor authentication on all crypto-related accounts.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% de confiançaAnálise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of l-live-us-ledg.pages.dev · checked Apr 29, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo