MALICIOUS — CRITICAL
Is ledger-live.app a Ledger Brand Impersonation Scam?
ledger-live[.]
PhishDestroy identifies ledger-live.app as an active brand impersonation scam targeting Ledger cryptocurrency wallet users.
- VirusTotal
- 8/94
- Blocklists
- No stored match
- Доступність
- Прикритий · доступний · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
ledger-live.app — Прикритий · доступний (HTTP 502). Уособлення бренду: Ledger; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 8/94 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CRDF, CyRadar); URLQuery 1 alert; Spamhaus DBL_PHISH; cloaking observed; PhishDestroy score 79/100. Реєстратор: PDR.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
PhishDestroy identifies ledger-live.app as an active brand impersonation scam targeting Ledger cryptocurrency wallet users. The malicious domain mimics Ledger’s official branding to trick visitors into entering sensitive recovery phrases or private keys, which are then harvested by attackers. This site is designed to appear legitimate at first glance, exploiting trust in the Ledger brand to deceive even security-aware users. This domain was flagged by PhishDestroy on April 13, 2026, the same day it was registered through PDR Ltd. d/b/a PublicDomainRegistry.com. As of the latest scan, it has achieved 0 detections out of 95 VirusTotal engines, meaning traditional antivirus tools have not yet flagged it. The domain resolves to IP address 43.169.13.123, hosted on infrastructure that is not associated with Ledger’s official services. If you visited ledger-live.app, do not enter any wallet recovery phrases, private keys, or personal information. Log out immediately and scan your device for malware. Report the incident to Ledger support and consider transferring funds to a new wallet if you shared sensitive details. Use only official Ledger domains (e.g., ledger.com) and verify SSL certificates before entering credentials.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Обсяг даних13 recorded checks
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | ledger-live.app |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 16 identified
Open-source CMS powering over 40% of websites worldwide.
Open-source relational database management system.
Server-side scripting language designed for web development.
Cloud computing platform offering compute, storage, and networking services.
Modern mobile touch slider with hardware-accelerated transitions.
Plugin to detect and restore deprecated jQuery features.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Tag management system for deploying marketing and analytics tags.
tagmanager.google.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of ledger-live.app · checked Apr 14, 2026
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.