ledgeerlog[.]framer[.]media
“Ledger® Live: Login | Secure Access to Your Wallet”
Quan sát đã lưu
Độ tương phản tiêu đề quan sát được
Tóm tắt bằng chứng
This domain, ledgeerlog.framer.media, is identified as a high-risk brand impersonation threat targeting Ledger, a cryptocurrency hardware wallet provider. The page mimics the official Ledger Live login interface, presenting users with a fraudulent portal titled 'Ledger® Live: Login | Secure Access to Your Wallet.' The objective of this campaign is to harvest user credentials, enabling unauthorized access to cryptocurrency wallets and subsequent asset theft. No specific drainer kit signatures were observed in the available telemetry, though the infrastructure aligns with common credential-harvesting phishing operations. Analysis indicates the domain resolves to the IP address 31.43.160.6 and is registered through CSC Corporate Domains, Inc. Detection metrics reveal a VirusTotal score of 19/95, with security vendors flagging the domain as malicious. The domain appears on three distinct security blocklists, including PhishDestroy, PhishingArmy, and OISD. Infrastructure analysis reveals the use of Framer Sites for hosting, alongside technologies such as React, HSTS, and HTTP/3. The SSL certificate is issued by Let's Encrypt, a common choice for both legitimate and malicious domains due to its accessibility. No Google Safe Browsing (GSB) status was explicitly provided, though the blocklist presence suggests broad detection. As of the latest assessment, ledgeerlog.framer.media has been taken offline, likely due to hosting provider intervention or registrar enforcement. While the immediate threat is mitigated, residual risk persists for users who may have interacted with the domain prior to its deactivation. Affected individuals are advised to revoke any active sessions, rotate credentials, and monitor wallet activity for unauthorized transactions. Organizations should update internal blocklists to include this domain and its associated IP to prevent future access attempts. Continued vigilance is recommended, as threat actors frequently re-deploy similar infrastructure under new domains.
Ảnh chụp bằng chứng đã gửi
- Đã gửi
- Bản ghi sổ cái
- 1
- Mã vụ việc
PD-20260530-66A25C- Tệp PDF
- Bằng chứng PDF
Cơ sở pháp lý
Toàn văn bằng chứng
Acceptable Use Policy (AUP): The domain ledgeerlog.framer.media is engaged in phishing activities, which directly contravenes the AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The registrar reserves the right to suspend or terminate services for violations, and the ongoing use of this domain for phishing constitutes a clear violation of these terms.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. law prohibits unauthorized access to computers and networks, which is applicable to phishing schemes that deceive users into providing sensitive information.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud individuals or entities via electronic communications, which is relevant to the fraudulent activities associated with this domain.
CAN-SPAM Act (15 U.S.C. § 7701): This act regulates commercial email and prohibits deceptive practices, including phishing, which this domain is evidently violating.
Regulatory Note: Failure to take immediate action against this domain may expose your organization to legal liability and regulatory scrutiny. Compliance with your AUP and TOS is critical to mitigate risks associated with hosting or registering domains involved in illegal activities.
Data Coverage
Tình báo an ninh mạng
Pipeline ứng phó với các mối đe dọa
Phạm vi danh sách chặn
10 nguồn ngoài được giám sát · ảnh chụp lưu ngày 12/08/2026
10 nguồn ngoài được giám sát Không trùng khớp
Dòng thời gian phát hiện
-
VirusTotal
12 → 19
Công nghệ
Đã xác định 4 công nghệ có độ tin cậy cao
Phân tích của VirusTotal
Phân tích hiệu suất trang
Google PageSpeed Insights — mobile performance audit of ledgeerlog.framer.media · checked Jun 26, 2026
Bạn có bị ảnh hưởng bởi trang web này không?
Nếu bạn đã nhập thông tin xác thực tài khoản, thông tin cá nhân hoặc thông tin thanh toán hoặc đã tải xuống tệp từ miền này, hãy hành động ngay lập tức. Dưới đây là các nguồn lực giúp bạn báo cáo vụ việc và bảo vệ chính mình.
Hãy báo cáo với chính quyền địa phương
Chọn quốc gia của bạn để nhận liên hệ tội phạm mạng chính thức hoặc soạn thảo đơn khiếu nại →.
Kiểm tra bất kỳ tên miền nào
Phân tích mối đe dọa bằng cách sử dụng danh sách chặn được lưu trữ, WHOIS, DNS và bằng chứng quét công khai
Quét ngayBáo cáo lừa đảo qua email
Hãy gửi các tên miền đáng ngờ đến cơ sở dữ liệu mối đe dọa của chúng tôi — để bảo vệ cộng đồng
Báo cáoDòng tin tức về các mối đe dọa thời gian thực
Các báo cáo lừa đảo gần đây và những thay đổi về tính khả dụng được quan sát thấy
Theo dõiLuôn cập nhật thông tin, luôn an toàn
Theo dõi các mối đe dọa đang diễn ra hoặc phản đối danh sách này nếu bạn cho rằng đây là kết quả báo động sai