ledger-eng-faq[.]pages[.]dev
“Ledger Wallet - Hardware Crypto Wallet | Ledger Live Portfolio …”
Збережене спостереження
Зафіксована відмінність заголовків
Зведення доказів
This domain, ledger-eng-faq.pages.dev, poses a brand impersonation threat targeting users of Ledger hardware crypto wallets. The site mimics the official Ledger interface, presenting itself as a legitimate portal for Ledger Live Portfolio management. Visitors are likely to encounter fake login prompts, software update requests, or wallet synchronization pages designed to harvest credentials, private keys, or seed phrases. Given the domain's focus on cryptocurrency hardware, the risk extends beyond credential theft to potential crypto asset drainage if users input sensitive wallet information. The site may also distribute malicious software disguised as official Ledger applications or firmware updates, further compromising user security. Analysis indicates the domain was registered on April 14, 2026, through Cloudflare, Inc., a registrar commonly used for both legitimate and malicious purposes. As of the latest scan, 2 out of 95 security vendors on VirusTotal flagged the domain as malicious, while it appears on one security blocklist. The domain resolves to the IP address 172.66.47.25 and employs Cloudflare's infrastructure, including HTTP/3 and HSTS, which are often leveraged to obfuscate malicious activity behind legitimate CDN services. The SSL certificate is issued by Google Trust Services, adding a layer of apparent legitimacy. The use of Tailwind CSS suggests an attempt to replicate the visual design of the official Ledger site, increasing the likelihood of successful deception. Users who visited ledger-eng-faq.pages.dev should assume their interactions were monitored and any entered information was compromised. Immediately revoke access to any connected crypto wallets and generate new seed phrases if credentials or private keys were shared. Scan the device used to access the site with updated security tools to detect potential malware. Monitor all linked accounts, including email and crypto exchanges, for unauthorized activity. Report the incident to the legitimate Ledger support team and relevant cybersecurity organizations to aid in tracking and mitigating the threat. Avoid interacting with any unsolicited communications claiming to be from Ledger, as these may be follow-up phishing attempts.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
VirusTotal
2 → 0
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of ledger-eng-faq.pages.dev · checked Jun 26, 2026
Аналіз конфігурації сайту
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога