led-ger-live-deskt[.]pages[.]dev
“ledger live desktop | Ledger Live Desktop — Official Download & Guide”
led-ger-live-deskt.pages.dev — Контент недоступний. Уособлення бренду: Ledger; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 7/91 (ADMINUSLabs, alphaMountain.ai, Emsisoft, Fortinet, Kaspersky); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 71/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, led-ger-live-deskt.pages.dev, represents a confirmed brand impersonation threat targeting users of Ledger cryptocurrency wallet software. Analysis indicates the site mimics the official Ledger Live desktop application download page, presenting itself as "ledger live desktop | Ledger Live Desktop — Official Download & Guide." The primary threat vector involves distributing counterfeit software installers that likely contain information stealers, cryptocurrency wallet drainers, or remote access trojans designed to compromise digital asset security. The domain specifically targets users seeking legitimate Ledger software updates or installations, exploiting trust in the Ledger brand to facilitate credential harvesting and financial theft. Infrastructure analysis reveals multiple concerning technical indicators. The domain was registered through Cloudflare, Inc. on April 28, 2026, with an anomalous future creation date suggesting potential domain generation algorithm usage or registry manipulation. It resolves to IP address 172.66.44.109 and presents a Google Trust Services SSL certificate, creating a false sense of legitimacy. Detection metrics show 14 of 95 security vendors flagging the domain on VirusTotal, while Gridinsoft assigns a trust score of 0/100. The domain appears on one security blocklist and was specifically blocked by PhishDestroy, confirming its malicious classification. The combination of brand impersonation, future-dated registration, and multiple detection flags elevates the risk profile significantly. Users who visited led-ger-live-deskt.pages.dev or downloaded associated files should take immediate remediation steps. First, terminate any active downloads and disconnect affected devices from networks. Perform a full system scan using updated security tools to detect potential malware installations. Users should verify cryptocurrency wallet integrity by checking transaction histories for unauthorized transfers and consider migrating funds to new wallet addresses if compromise is suspected. Password changes for all cryptocurrency-related accounts are strongly recommended, particularly for Ledger Live credentials and associated email accounts. Monitor financial accounts for suspicious activity and report the incident to relevant cybersecurity authorities. The domain's current offline status does not eliminate the risk posed by previously distributed malicious payloads.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of led-ger-live-deskt.pages.dev · checked Jun 26, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога