leedger-llive-desktop[.]pages[.]dev
“Ledger Live – Your All‑in‑One Crypto Wallet App”
leedger-llive-desktop.pages.dev — Неперевірений. Уособлення бренду: Ledger; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); PhishDestroy score 95/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, leedger-llive-desktop.pages.dev, is flagged as a high-risk brand impersonation phishing site targeting Ledger, a cryptocurrency hardware wallet provider. The page mimics the official Ledger Live application interface, presenting itself as the legitimate "All-in-One Crypto Wallet App" to deceive users into entering sensitive credentials or recovery phrases. Analysis indicates no explicit drainer kit integration at this stage, though the infrastructure supports rapid deployment of malicious scripts if required. Infrastructure analysis reveals the domain was registered through Cloudflare, Inc. on April 03, 2026, and resolves to the IP address 172.66.47.42, hosted in a Cloudflare data center in California. The SSL certificate is issued by Google Trust Services (WE1), a common feature in phishing campaigns leveraging cloud-based hosting to evade detection. VirusTotal reports 12 out of 95 security vendors flagging this domain as malicious, while it appears on one security blocklist. Google Safe Browsing (GSB) status remains unconfirmed, though the domain is actively blocked by at least one threat intelligence feed. The domain remains operational as of the latest verification, posing an ongoing risk to users unfamiliar with Ledger’s legitimate domains. Response actions include submission to additional threat intelligence platforms for broader blocking and monitoring for dynamic content changes that may introduce credential-harvesting or cryptocurrency-draining functionality. Users are advised to verify domain authenticity by cross-referencing with official Ledger communication channels and to avoid entering sensitive information on unverified platforms. Organizations should update web filtering rules to block access to this domain and monitor for related infrastructure reuse.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of leedger-llive-desktop.pages.dev · checked Apr 15, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога