ledger-desktop-en-us[.]pages[.]dev
“Ledger® Live: Login | Getting started™ with Ledger”
ledger-desktop-en-us.pages.dev — 内容不可用. 品牌冒充:Ledger; 诈骗类型:Credential Phishing. 证据摘要: VirusTotal 13/94 (BitDefender, CyRadar, ESET, Emsisoft, Fortinet); URLScan malicious verdict; PhishDestroy score 94/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, ledger-desktop-en-us.pages.dev, poses a targeted brand impersonation threat designed to deceive users into disclosing sensitive credentials associated with Ledger hardware wallet accounts. The page mimics the official Ledger Live login interface, presenting a fraudulent portal titled 'Ledger® Live: Login | Getting started™ with Ledger.' Such infrastructure is commonly leveraged in crypto drainer schemes, where victims are tricked into entering recovery phrases or private keys, enabling unauthorized access to cryptocurrency wallets and subsequent asset theft. The use of brand-specific terminology and visual design elements increases the likelihood of successful social engineering, particularly among users unfamiliar with official domain structures or security best practices. Analysis of the domain reveals multiple technical indicators corroborating its malicious nature. The domain was registered on April 09, 2026, through Cloudflare, Inc., a registrar frequently exploited for rapid deployment of phishing infrastructure. Security vendors on VirusTotal flag the domain at a rate of 14 out of 95, indicating moderate consensus regarding its malicious intent. The domain resolves to the IP address 188.114.97.3 and employs an SSL certificate issued by Google Trust Services, which, while providing encryption, does not validate the legitimacy of the site. Gridinsoft assigns the domain a trust score of 0 out of 100, and it appears on one security blocklist, further confirming its classification as a phishing endpoint. Users who have visited ledger-desktop-en-us.pages.dev or entered credentials on the site should assume their account information has been compromised. Immediate actions include revoking access to any linked wallets, generating new recovery phrases, and transferring assets to a secure, unrelated wallet. It is critical to monitor all associated accounts for unauthorized transactions and enable multi-factor authentication where available. Additionally, users should report the domain to their security software provider and consider filing a complaint with relevant cybercrime authorities. To prevent future incidents, users are advised to verify domain authenticity by cross-referencing official communications and using bookmarked links to access legitimate services.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of ledger-desktop-en-us.pages.dev · checked Jun 26, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。