app-ledgr-eng[.]pages[.]dev
Перевірка домену app-ledgr-eng.pages.dev на фішинг і безпеку
“Ledger Live Loginn | Simple, Secure & Fast Wallet Access”
app-ledgr-eng.pages.dev — Останній відомий активний (HTTP 200). Уособлення бренду: Ledger; Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 10/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, ESET, Fortinet); URLScan malicious verdict; PhishDestroy score 95/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain operates as a fraudulent replica of the official Ledger Live wallet interface, designed to harvest cryptocurrency wallet credentials and recovery phrases. The site presents a near-identical login page titled 'Ledger Live Loginn | Simple, Secure & Fast Wallet Access,' targeting users who may overlook the misspelling in the page title. Visitors entering sensitive information risk immediate compromise of their digital assets, as the phishing infrastructure is configured to relay stolen credentials to attacker-controlled servers in real time. Analysis indicates the domain was registered on April 17, 2026, through Cloudflare, Inc., a registrar frequently exploited for its free hosting and privacy protections. The domain resolves to IP address 188.114.97.3, geolocated to Canada and associated with Cloudflare's content delivery network. Detection metrics reveal limited but critical coverage: only 3 out of 95 security vendors on VirusTotal currently flag the domain, while a single blocklist entry exists under PhishDestroy. The SSL certificate, issued by Google Trust Services (WE1), further obscures malicious intent by presenting a seemingly legitimate encryption layer. Users who have visited app-ledgr-eng.pages.dev or entered credentials should immediately revoke access to any connected wallets and transfer assets to new, secure addresses. All passwords and recovery phrases associated with the compromised account must be considered exposed and replaced. Enable multi-factor authentication on all cryptocurrency platforms and monitor transaction histories for unauthorized activity. Security teams are advised to block the domain and its resolving IP (188.114.97.3) at the network perimeter, as the site remains active and continues to pose a direct threat to Ledger users.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of app-ledgr-eng.pages.dev · checked Apr 18, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога