us-eng-ledgr[.]pages[.]dev
“Ledger Live App® — The Secure Crypto Companion for Ledger Devices”
已存储的观测记录
观测到的标题差异
证据摘要
This domain, us-eng-ledgr.pages.dev, is flagged for brand impersonation targeting Ledger, a hardware cryptocurrency wallet provider. Analysis indicates the site mimics the official Ledger Live application interface, presenting a high-risk vector for crypto asset theft. The page title, 'Ledger Live App® — The Secure Crypto Companion for Ledger Devices,' closely replicates legitimate branding, increasing the likelihood of user deception. Such impersonation campaigns typically aim to distribute malicious software or harvest wallet credentials, enabling unauthorized access to cryptocurrency holdings. The threat is particularly acute given the irreversible nature of blockchain transactions, which can result in permanent financial loss for victims. Infrastructure analysis reveals the domain was registered on April 30, 2026, through Cloudflare, Inc., and currently resolves to the IP address 172.66.47.79. Detection metrics show 0 out of 95 security engines on VirusTotal have flagged the domain as malicious, though it appears on one security blocklist. The SSL certificate is issued by Google Trust Services, providing a false sense of legitimacy. The domain's recent creation date and low detection rate suggest it may be part of a newly deployed campaign designed to evade automated security measures. The use of a content delivery network further complicates attribution and takedown efforts. Users who visited us-eng-ledgr.pages.dev should immediately cease all interaction with the site and disconnect any connected cryptocurrency wallets. It is critical to verify wallet integrity by checking for unauthorized transactions or unexpected changes to recovery phrases. If credentials were entered, users must transfer assets to a new, secure wallet and revoke any suspicious permissions granted to decentralized applications. Additionally, monitoring for unusual activity on linked accounts is recommended. Given the domain's offline status, users should remain vigilant for similar impersonation attempts, as threat actors often deploy replacement domains following takedowns.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
检测时间线
-
VirusTotal
1 → 9
-
VirusTotal
9 → 0
域名情报
技术详情DNS、TLS 名称和时间戳
技术
识别出 3 项高置信度技术
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of us-eng-ledgr.pages.dev · checked Jun 26, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控