officialvisit-ledger[.]pages[.]dev
“Ledger® Live: Login | Getting started™ with Ledger®”
证据摘要
PhishDestroy identifies officialvisit-ledger.pages.dev as an active crypto-draining scam designed to steal cryptocurrency wallet credentials and assets from unsuspecting Web3 users. This fraudulent site mimics legitimate blockchain ledger interfaces and prompts visitors to connect wallets for so-called balance checks, enabling silent token transfers to attacker-controlled addresses via malicious smart-contract interactions. Analysis of the payload reveals code injection patterns identical to known crypto-drainer families such as VenomDrainer and AngelDrainer, confirming its classification as a crypto drainer rather than generic phishing. Evidence supporting this threat assessment includes a detection ratio of 18 out of 95 security vendors on VirusTotal and registration through Cloudflare, Inc., which obscures the true hosting origin behind its proxy network at IP address 188.114.97.3. The domain leverages a Google Trust Services SSL certificate to enhance credibility and evade browser warnings. Independent threat-intelligence feeds have logged multiple user reports linking this domain to unauthorized wallet drain incidents within the past 48 hours, placing it on PhishDestroy’s elevated-risk tier. Users who visited officialvisit-ledger.pages.dev should immediately disconnect any connected wallets, revoke any recently approved token permissions using tools such as revoke.cash or Etherscan’s Token Approval Checker, and transfer remaining assets to a newly created cold wallet. Enable multi-factor authentication on all exchange and wallet accounts and consider deploying hardware wallet solutions. If any transactions appear suspicious, file an incident report with local cybercrime units and blockchain analysis platforms to aid in fund recovery. Monitor credit and transaction alerts to detect further compromise.
Data Coverage
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | officialvisit-ledger.pages.dev |
malicious | Sinkholed |
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
技术
识别出 3 项高置信度技术
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of officialvisit-ledger.pages.dev · checked May 1, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控