EN ES PT
Back to Stats

Captura Visual

Screenshot of aps-ledgerlive-com.typedream.app

Información de Detección

https://aps-ledgerlive-com.typedream.app/
Detected Brand
Ledger
Country
International
Confianza
100%
HTTP Status
200
Report ID
89e705e2-038…
Analyzed
2026-02-25 17:35

Hashes de Contenido (Similitud HTML)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T10953FA9A6452702A477340E344BB1B89B3391C2FF82D15E195B8C7E672AC8F5312BF5B
CONTENT ssdeep
768:EyWuPiP8uQWt/y/X51WM9j0szWX8UUsre2ZydiE6Aaq7UJNz9GWaUa85Aw/U3T59:h8yOloQzZs8oWQbp

Hashes Visuales (Similitud de Captura)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
91eeee99e152106d
VISUAL aHash
ffff004e0a0e0000
VISUAL dHash
031a1c989a9c1ccb
VISUAL wHash
ffff0e6e0e0f0020
VISUAL colorHash
324010000c0
VISUAL cropResistant
030041d696c20203,fca4a4b0b6eacec3,0000000000020408,60c4848480828280,030303c3d3030303,1afc989a98dc00cb

Análisis de Código

Risk Score 79/100
Nivel de Amenaza ALTO
⚠️ Phishing Confirmed
🎣 Credential Harvester 🎣 OTP Stealer 🎣 Card Stealer 🎣 Banking 🎣 Personal Info

🔬 Threat Analysis Report

• Amenaza: Suplantación de identidad
• Objetivo: Usuarios de Ledger
• Método: Suplantación de dominio y ofuscación de Javascript
• Exfil: Desconocido
• Indicadores: Discordancia de dominio, uso de alojamiento Typedream, Javascript ofuscado
• Riesgo: Alto

🔒 Obfuscation Detected

  • fromCharCode
  • unescape
  • unicode_escape

📡 API Calls Detected

  • https://typedream.com/forms?utm_source=form-thank-you-page:
  • POST
  • GET

📊 Desglose de Puntuación de Riesgo

Total Risk Score
90/100

Contributing Factors

Domain Mismatch
The domain doesn't belong to the official brand.
Free Hosting
The site is hosted on a free hosting platform (Typedream.app), often used by attackers.
Javascript Obfuscation
Obfuscated Javascript detected - typically used to hide malicious code.

🔬 Análisis Integral de Amenazas

Tipo de Amenaza
Banking Credential Harvester
Objetivo
Ledger users (International)
Método de Ataque
Brand impersonation + obfuscated JavaScript
Canal de Exfiltración
Form submission (backend endpoint not detected - likely JavaScript-based)
Evaluación de Riesgo
HIGH - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

⚠️ Indicators of Compromise

  • Kit types: Credential Harvester, OTP Stealer, Card Stealer, Banking, Personal Info
  • 698 obfuscation techniques

🏢 Análisis de Suplantación de Marca

Impersonated Brand
Ledger
Official Website
ledger.com
Fake Service
Ledger website

⚔️ Metodología de Ataque

Primary Method: Brand impersonation

The attacker attempts to steal user credentials by creating a fake website that imitates the Ledger website. This is achieved by creating a similar look and feel to fool the user into entering their login details on the fake website.

Target Blockchain
unknown

🌐 Indicadores de Compromiso de Infraestructura

Domain Information

Dominio
aps-ledgerlive-com.typedream.app
Registered
None
Registrar
None
Estado
Inactive

🤖 AI-Extracted Threat Intelligence

Scan History for aps-ledgerlive-com.typedream.app

Found 1 other scan for this domain

😰
"Nunca pensé que me pasaría a mí"
Esto dicen las 2.3 millones de víctimas cada año. No esperes a ser una estadística.