lidgercom-en-lear-n[.]pages[.]dev
“Ledger® Live: Login | Getting Started™ — Step‑by‑Step Guide”
证据摘要
This domain represents a high-risk cryptocurrency wallet impersonation threat targeting users of Ledger hardware wallets. The infrastructure presents an exact replica of the official Ledger Live login interface, complete with branding elements, step-by-step guides, and authentication prompts designed to harvest cryptocurrency wallet credentials and recovery phrases. Analysis of the page title "Ledger® Live: Login | Getting Started™ — Step-by-Step Guide" confirms the domain mimics legitimate onboarding processes to increase victim trust and compliance. Infrastructure analysis reveals multiple technical indicators supporting malicious classification. The domain lidgercom-en-lear-n.pages.dev was registered on March 23, 2026 through Cloudflare, Inc. and currently resolves to IP address 172.66.44.207, hosted on Cloudflare's network in California. Security vendor analysis shows 17 out of 95 engines flag the domain as malicious on VirusTotal, while PhishDestroy maintains an active blocklist entry. The domain uses a Google Trust Services SSL certificate (WE1) to present a false sense of security to potential victims. Users who have interacted with this domain should immediately revoke any entered credentials and assume compromise of sensitive wallet information. All cryptocurrency transactions conducted after visiting this domain should be treated as potentially compromised. Affected users should transfer remaining assets to new wallet addresses using fresh recovery phrases and monitor all connected accounts for unauthorized activity. Security teams should update blocklists to include this domain and its associated IP address 172.66.44.207 to prevent further exposure across organizational networks.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of lidgercom-en-lear-n.pages.dev · checked Mar 23, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控