lghts[.]d7jyu2dnjykvx[.]amplifyapp[.]com
“Ledger Live”
lghts.d7jyu2dnjykvx.amplifyapp.com — Контент недоступний (HTTP 502). Уособлення бренду: Ledger; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 11/93 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Fortinet); URLScan malicious verdict; PhishDestroy score 88/100.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, lghts.d7jyu2dnjykvx.amplifyapp.com, is a brand impersonation site designed to deceive users of Ledger, a hardware cryptocurrency wallet provider. The site mimics the official Ledger Live interface, tricking visitors into entering sensitive information such as recovery phrases, private keys, or login credentials. If successful, attackers can drain cryptocurrency wallets or gain unauthorized access to user accounts, leading to financial loss and identity compromise. The domain specifically targets individuals familiar with Ledger’s products, exploiting trust in the brand to facilitate fraudulent activity. Analysis indicates this domain was created on February 21, 2026, and is hosted on infrastructure associated with Amazon Web Services, resolving to the IP address 18.239.69.83. Security vendor scans on VirusTotal show 11 out of 95 engines flagging the domain as malicious, confirming its use in fraudulent operations. The SSL certificate, issued by Amazon RSA 2048 M04, is consistent with legitimate services but does not validate the site’s authenticity. The domain appears on at least one security blocklist, and its page title, "Ledger Live," further confirms its intent to impersonate the official Ledger platform. If you visited lghts.d7jyu2dnjykvx.amplifyapp.com or entered any sensitive information, take immediate action to secure your assets. Disconnect any devices connected to the site and revoke access to any wallet applications linked to it. Use a trusted device to change passwords for all cryptocurrency-related accounts and enable multi-factor authentication where available. Scan your device for malware using updated security software to detect any potential infections. If you shared recovery phrases or private keys, transfer your funds to a new wallet immediately, as the compromised keys may already be in attackers’ possession. Monitor your accounts for unauthorized transactions and report the incident to your wallet provider and relevant authorities.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога