ledger-desktop-en-us[.]pages[.]dev
“Ledger® Live: Login | Getting started™ with Ledger”
ledger-desktop-en-us.pages.dev — Контент недоступний. Уособлення бренду: Ledger; Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 13/94 (BitDefender, CyRadar, ESET, Emsisoft, Fortinet); URLScan malicious verdict; PhishDestroy score 94/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, ledger-desktop-en-us.pages.dev, poses a targeted brand impersonation threat designed to deceive users into disclosing sensitive credentials associated with Ledger hardware wallet accounts. The page mimics the official Ledger Live login interface, presenting a fraudulent portal titled 'Ledger® Live: Login | Getting started™ with Ledger.' Such infrastructure is commonly leveraged in crypto drainer schemes, where victims are tricked into entering recovery phrases or private keys, enabling unauthorized access to cryptocurrency wallets and subsequent asset theft. The use of brand-specific terminology and visual design elements increases the likelihood of successful social engineering, particularly among users unfamiliar with official domain structures or security best practices. Analysis of the domain reveals multiple technical indicators corroborating its malicious nature. The domain was registered on April 09, 2026, through Cloudflare, Inc., a registrar frequently exploited for rapid deployment of phishing infrastructure. Security vendors on VirusTotal flag the domain at a rate of 14 out of 95, indicating moderate consensus regarding its malicious intent. The domain resolves to the IP address 188.114.97.3 and employs an SSL certificate issued by Google Trust Services, which, while providing encryption, does not validate the legitimacy of the site. Gridinsoft assigns the domain a trust score of 0 out of 100, and it appears on one security blocklist, further confirming its classification as a phishing endpoint. Users who have visited ledger-desktop-en-us.pages.dev or entered credentials on the site should assume their account information has been compromised. Immediate actions include revoking access to any linked wallets, generating new recovery phrases, and transferring assets to a secure, unrelated wallet. It is critical to monitor all associated accounts for unauthorized transactions and enable multi-factor authentication where available. Additionally, users should report the domain to their security software provider and consider filing a complaint with relevant cybercrime authorities. To prevent future incidents, users are advised to verify domain authenticity by cross-referencing official communications and using bookmarked links to access legitimate services.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of ledger-desktop-en-us.pages.dev · checked Jun 26, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога