ledgapp-live[.]pages[.]dev
ledgapp-live.pages.dev 网络钓鱼与安全检查
“Ledger Live App — Official Download Guide”
ledgapp-live.pages.dev — 可达 · 访问受限 (HTTP 403). 品牌冒充:Ledger; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 5/94 (Emsisoft, Fortinet, Kaspersky, Netcraft, Sophos); URLScan malicious verdict; PhishDestroy score 70/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, ledgapp-live.pages.dev, is flagged for brand impersonation targeting Ledger, a hardware cryptocurrency wallet provider. Analysis indicates the site mimics the official Ledger Live application download portal, presenting a high-fidelity replica of the legitimate interface. The page title, 'Ledger Live App — Official Download Guide,' reinforces the deception, likely intended to harvest user credentials or distribute malicious software under the guise of a trusted brand. No explicit crypto drainer kit signatures were identified, but the domain exhibits characteristics consistent with credential theft or malware distribution infrastructure.
Technical indicators reveal the domain was registered on April 12, 2026, through Cloudflare, Inc., and resolves to the IP address 172.66.44.74. VirusTotal reports 0 detections out of 95 engines, suggesting the domain has not yet been widely flagged by security vendors. The domain appears on a single security blocklist, and its Gridinsoft trust score is 0/100, indicating a complete lack of reputation. The site employs HSTS and HTTP/3 protocols, alongside a Google Trust Services SSL certificate, which may lend an air of legitimacy to unsuspecting users. Google Safe Browsing (GSB) status is not explicitly provided, but the domain's infrastructure and registration details align with known phishing patterns.
As of the latest assessment, ledgapp-live.pages.dev has been taken offline, likely in response to reports or automated takedown mechanisms. The domain was blocked by at least one security provider, though the absence of broader detections suggests it may have evaded early detection. Remaining risk includes potential re-emergence under a similar domain or IP, as well as the possibility of residual compromise for users who interacted with the site prior to takedown. Users are advised to verify domain authenticity via official Ledger channels, monitor for unauthorized transactions, and report any suspicious activity to their security teams. Infrastructure analysis reveals the use of Cloudflare services, which may complicate attribution but also provides an avenue for further mitigation through provider-level interventions.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of ledgapp-live.pages.dev · checked Jun 26, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。