fuc-desktoplive[.]pages[.]dev
“Ledger Wallet – Secure Hardware Wallet Management”
fuc-desktoplive.pages.dev — Останній відомий активний (HTTP 200). Уособлення бренду: Ledger; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 9/91 (alphaMountain.ai, BitDefender, CyRadar, ESET, Fortinet); URLScan malicious verdict; PhishDestroy score 93/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, fuc-desktoplive.pages.dev, operates as a fraudulent imitation of a legitimate hardware wallet management platform. Analysis indicates it presents itself as a secure portal for Ledger devices, using identical branding, page layout, and terminology to deceive users into entering sensitive credentials or recovery phrases. The site is designed to harvest cryptocurrency wallet access details, enabling attackers to drain funds from unsuspecting victims. Given the irreversible nature of blockchain transactions, the financial and privacy risks posed by this site are severe and immediate. Infrastructure analysis reveals multiple technical indicators confirming malicious intent. The domain was registered on June 10, 2026, through Cloudflare, Inc., and currently resolves to the IP address 172.66.44.229. It is flagged by 10 out of 95 security vendors on VirusTotal, including detection as a phishing site by PhishDestroy. The SSL certificate, issued by Google Trust Services (WE1), is legitimate but does not validate the site's authenticity—only its encrypted connection. Additionally, the domain appears on one security blocklist, further corroborating its classification as a high-risk threat. Users who have visited fuc-desktoplive.pages.dev or entered any information on the site should take immediate action to mitigate potential compromise. First, disconnect any hardware wallets or devices connected to the site and cease all interaction. Next, initiate a full security audit of associated accounts, including checking transaction histories for unauthorized activity. If credentials or recovery phrases were entered, transfer all assets to a new, secure wallet immediately, as the existing one is likely compromised. Finally, report the domain to relevant security teams and monitor for further indicators of compromise, such as unexpected login attempts or phishing communications.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Аналіз конфігурації сайту
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога