page-ledgre-home[.]pages[.]dev
“Ledger Live Desktop® | Manage Your Crypto™ Assets Safely”
page-ledgre-home.pages.dev — 内容不可用. 品牌冒充:Ledger; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 3/94 (ADMINUSLabs, Kaspersky, LevelBlue); URLScan malicious verdict; PhishDestroy score 65/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies page-ledgre-home.pages.dev as a live crypto-draining phishing page masquerading as the official Ledger Live Desktop application. The domain serves a fraudulent replica of Ledger’s legitimate interface, engineered to harvest seed phrases, private keys, and wallet passwords directly from unwitting users. By mimicking the exact page title and branding of the real Ledger Live Desktop® | Manage Your Crypto™ Assets Safely interface, this phishing site aims to trick cryptocurrency holders into entering sensitive credentials, which are then transmitted to attacker-controlled wallets, resulting in immediate asset exfiltration. Cloudflare-served infrastructure and a Google Trust Services SSL certificate lend undeserved legitimacy, making detection and avoidance difficult without active threat intelligence. This domain was flagged by PhishDestroy on 2024-04-05 after 3 out of 95 VirusTotal engines detected the threat, illustrating how signature-based tools often miss novel phishing campaigns. It resolves to IP 188.114.97.3, a Cloudflare-operated address used to host multiple active crypto-draining pages. Registered through Cloudflare, Inc., the site has remained active for over 7 days and has not been listed on any major blocklists, highlighting the need for real-time phishing intelligence. The combination of a newly registered (circa 2024-03-29) subdomain, low detection coverage, and impersonation of a high-value target like Ledger Live creates a significant risk of financial loss. Users who may have visited this site should immediately cease using any entered credentials or seed phrases. Disconnect from the internet, clear browser caches and cookies, and inspect wallet applications for unauthorized transactions. Full device scans using up-to-date antivirus software are strongly recommended. For further verification and real-time protection, users should run the domain through PhishDestroy’s live scanner at phishdestroy.com/scan. Ledger users should only download the official client from ledger.com and verify the SHA-256 hash before installation. Remain vigilant—this campaign is actively evolving and may expand to other domains or platforms.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of page-ledgre-home.pages.dev · checked Apr 19, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。