official-desktop-ledgger[.]framer[.]ai
“Ledger Live Desktop® – Smart Crypto Tracking & Security”
official-desktop-ledgger.framer.ai — Контент недоступен. Олицетворение бренда: Ledger; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 0 detections (engine total unavailable); URLScan malicious verdict; PhishDestroy score 45/100. Регистратор: CSC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain official-desktop-ledgger.framer.ai was registered on January 06, 2018 through CSC Corporate Domains, Inc. and resolves to the Amazon Web Services address 52.223.52.2, belonging to AS16509 Amazon.com, Inc. The hosting location is the United States. DNS resolution is provided by four Amazon name servers (ns-114.awsdns-14.com, ns-1198.awsdns-21.org, ns-1902.awsdns-45.co.uk, ns-635.awsdns). An SSL certificate issued by Let’s Encrypt (E8) secures the site, and the server advertises HSTS and HTTP/3 support. Technology fingerprinting identifies the use of Framer Sites and the React framework.
The HTTP response for the root URL is a 404 status, and the domain is currently taken offline. The page title returned by the server is "Ledger Live Desktop® – Smart Crypto Tracking & Security," indicating an attempt to impersonate the Ledger brand. The infrastructure has been classified as a crypto‑related scam and appears on a single security blocklist, PhishDestroy. VirusTotal analysis shows scans from 95 vendors with no detections, though the absence of flags does not constitute a safety guarantee.
No additional public threat‑intel sources (e.g., OTX, Safe Browsing) are cited in the available data. Defenders should continue to block the domain at perimeter filters, monitor for any re‑activation, and consider adding the domain to internal deny lists. Because the site is offline, dynamic analysis is not possible; however, the combination of brand‑specific page title, use of a reputable CDN, and the presence on a phishing blocklist suggests a deliberate impersonation campaign targeting Ledger users. Organizations that rely on Ledger services should educate users about the risk of unsolicited links and reinforce verification of legitimate Ledger URLs before entering credentials or installing software.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com 100% уверенностиReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% уверенностиHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание