ldger-io-dsktop[.]pages[.]dev
“Ledger Live Desktop - Official Secure Crypto Portfolio App”
ldger-io-dsktop.pages.dev — Контент недоступний. Уособлення бренду: Ledger; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 6/94 (Emsisoft, Fortinet, Kaspersky, LevelBlue, Netcraft); URLScan malicious verdict; PhishDestroy score 73/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies ldger-io-dsktop.pages.dev as an active crypto drainer posing under investigation for malicious activity. This domain mimics legitimate cryptocurrency services to trick users into connecting wallets or entering seed phrases, allowing attackers to drain funds directly. The site leverages Cloudflare Pages for hosting, making it harder to trace while providing SSL encryption via Google Trust Services to appear legitimate. Users should treat this as a high-risk threat until further analysis confirms its exact payload or infrastructure changes. This domain was flagged with zero detections out of 95 VirusTotal scans, suggesting it has evaded automated detection tools thus far. Registered through Cloudflare, Inc., the site resolves to IP address 188.114.97.3, a Cloudflare edge node often abused by threat actors for phishing campaigns. The combination of a recent registration date (exact date redacted for security), Cloudflare’s anonymizing services, and a Google-issued SSL certificate creates a deceptive appearance of legitimacy. Threat intelligence indicates this domain is part of an ongoing campaign targeting cryptocurrency users under the guise of a desktop wallet or service portal. If you visited ldger-io-dsktop.pages.dev, do not connect any cryptocurrency wallets or enter private keys, seed phrases, or recovery phrases. Disconnect your device from the internet immediately to prevent potential backdoor communication. Scan your system with reputable antivirus software and consider revoking any wallet connections made during the visit through your wallet provider’s interface. Report the domain to your antivirus vendor, PhishDestroy, and the platform where you encountered the link (e.g., Discord, Twitter, email). If you entered sensitive information, transfer remaining funds to a new wallet immediately and monitor for unauthorized transactions. Always verify URLs manually and use bookmarks for trusted crypto services to avoid typosquatting traps like this one.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of ldger-io-dsktop.pages.dev · checked Apr 13, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога