487432ea[.]bvfhgvuddfh[.]pages[.]dev
“Ledger Live”
487432ea.bvfhgvuddfh.pages.dev — Доступен · доступ ограничен (HTTP 403). Олицетворение бренда: Ledger; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 11/93 (BitDefender, CyRadar, Fortinet, G-Data, Google Safebrowsing); URLScan malicious verdict; Google Safe Browsing flagged; PhishDestroy score 83/100. Регистратор: Cloudflare.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of 487432ea.bvfhgvuddfh.pages.dev indicates a high‑risk brand‑impersonation campaign targeting Ledger users. The site, hosted on Cloudflare’s edge network (AS13335) and resolving to 172.66.47.14, was created on 2 September 2020 and employs HSTS, HTTP/3 and a Google Trust Services / WE1 SSL certificate. HTTP requests return a 403 status, suggesting the content has been removed or restricted; the domain is currently listed as offline by monitoring services. Reputation data shows the domain is flagged by multiple defenses.
Google Safe Browsing classifies it as a social‑engineering threat, and PhishDestroy has actively blocked it. Gridinsoft assigns a trust score of 0 / 100, and the domain appears on one security blocklist. VirusTotal analysis reports that 11 of 93 scanned security vendors identify the domain as malicious, reinforcing the high‑risk assessment. The page title “Ledger Live” and the explicit indication that the site impersonates Ledger confirm a crypto‑scam motive.
No additional page content has been captured, so the exact phishing payload remains unknown. Defenders should continue to block the domain at DNS and proxy layers, monitor for any resurgence of the host on Cloudflare’s network, and ensure that endpoint protection solutions incorporate the observed vendor detections. Users should be warned that any unsolicited requests claiming to be from Ledger or referencing “Ledger Live” originating from this sub‑domain are fraudulent.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Криминалистическая аналитика
Технологии · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of 487432ea.bvfhgvuddfh.pages.dev · checked Mar 24, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание