portal-ledgr-live-wallet[.]pages[.]dev
“Ledger Live Wallet - Secure Your Crypto”
portal-ledgr-live-wallet.pages.dev — Неперевірений. Уособлення бренду: Ledger; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); PhishDestroy score 95/100. Реєстратор: Cloudflare Pages.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain portal-ledgr-live-wallet.pages.dev has been identified as a high-risk crypto drainer, specifically designed to impersonate the Ledger Wallet interface. This domain facilitates the unauthorized transfer of cryptocurrency assets from victims' wallets by deploying malicious JavaScript payloads upon interaction. Current analysis confirms the domain remains active and operational, posing an immediate threat to users who may mistake it for the legitimate Ledger platform. Infrastructure analysis reveals the domain was registered on May 27, 2026, through Cloudflare Pages, a service often exploited for its ease of deployment and anonymity. Security telemetry indicates that 15 of 95 vendors on VirusTotal have flagged this domain as malicious, while it appears on one additional security blocklist. The domain's unique seed identifier, 67894c, further distinguishes it in threat intelligence repositories. No legitimate association with Ledger SAS or its official services has been established, reinforcing its fraudulent nature. Current status confirms the domain remains active, with no takedown or mitigation measures observed as of this report. Organizations and individuals are advised to block this domain at the network perimeter and update endpoint protection rules to include its indicators of compromise. Users should verify wallet addresses and transaction prompts against official Ledger channels before executing any transfers. Given the domain's persistence and high-risk classification, monitoring for related infrastructure or similar impersonation attempts is recommended.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога