suport-ledger-live-donload[.]pages[.]dev
“Ledger Live Download – The Official and Secure App”
suport-ledger-live-donload.pages.dev — Контент недоступний. Уособлення бренду: Ledger; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 10/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, Fortinet); URLScan malicious verdict; PhishDestroy score 85/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain suport-ledger-live-donload.pages.dev was registered on March 23, 2026 and is hosted on Cloudflare's network (IP 172.66.44.99, located in Canada). The site resolves to Cloudflare's edge with HSTS and HTTP/3 enabled, and presents a TLS certificate issued by Google Trust Services under the WE1 root. An HTTP 403 response was observed, indicating the content is currently inaccessible. The page title retrieved from the site, “Ledger Live Download – The Official and Secure App”, explicitly references Ledger’s official software, matching the declared brand target “Ledger” and the classified scam type “Crypto Scam”.
VirusTotal scans report ten of ninety‑four antivirus engines flagging the domain as malicious, and the domain is listed on PhishDestroy as well as one additional security blocklist. Gridinsoft assigns a trust score of zero out of one hundred, reinforcing the malicious assessment. Nameservers are cosmin.ns.cloudflare.com and tina.ns.cloudflare.com, both belonging to Cloudflare. The site is presently offline, having been taken down, but the infrastructure artifacts remain observable.
The available evidence confirms that the domain was purpose‑built to impersonate Ledger’s Live application and to lure cryptocurrency users. No further content analysis was possible due to the 403 response, so the exact landing page structure, credential‑capture mechanisms, or additional payloads remain unknown. Defenders should continue to block the domain at DNS and network layers, monitor for any re‑registration attempts on the same sub‑domain pattern, and update endpoint protection signatures to include the observed VirusTotal detections. Incident response teams encountering traffic to this domain should treat it as a high‑confidence crypto‑related phishing indicator and correlate it with any Ledger credential theft alerts.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Криміналістичні дані
Технології · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of suport-ledger-live-donload.pages.dev · checked Mar 30, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога