ldgerres-live[.]pages[.]dev
“Ledger Live Wallet — Technical Edition”
证据摘要
PhishDestroy identifies the domain ldgerres-live.pages.dev as an active crypto drainer that silently siphons funds from connected wallets the moment victims authorize malicious token contracts. The site mimics legitimate crypto-services to trick users into granting unlimited spend approvals, which the attacker then exploits to drain stable-coins, NFTs, and other assets without further prompts. Any transaction signed after visiting this page could trigger an irreversible transfer to wallets controlled by the threat actor, leaving victims with empty balances in minutes. This domain was flagged by PhishDestroy on seed 50cc2e and is currently resolving to IP 172.66.44.135 via Cloudflare’s infrastructure. The attacker leveraged Google Trust Services for an SSL certificate to appear legitimate, yet VirusTotal still shows 0 detections out of 95 scanners as of the latest crawl, indicating the page remains undetected by most automated defenses. Registrar data and certificate issuance point to recent setup tactics designed to evade early detection. If you visited ldgerres-live.pages.dev, disconnect your wallet immediately and revoke any token approvals through reputable tools like revoke.cash or Rabby’s built-in revoke feature. Do NOT sign any additional transactions or approve new contracts from this site. Report the incident to PhishDestroy using the seed “50cc2e” and consider rotating wallet addresses if you interacted with the page at all. Monitor your transaction history for unauthorized transfers and contact your wallet provider for further guidance.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of ldgerres-live.pages.dev · checked Apr 4, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控