الانتقال إلى تقرير الأمان
أمن المجال وذكاء التهديدات
check-hardware.org favicon

check-hardware.org

“Wallet - Ledger”

حكم التهديد حرجة 100/100 درجة الأدلة
التوفر خطأ في الخادم آخر استجابة مخزنة كانت غير حاسمة
اكتشافات VirusTotal: 8/89 Spamhaus DBL: DBL_PHISH انتحال العلامة التجارية: Ledger المجال الصغير: 6 عمره أيام
OTX: 2 refs 16/09/2026 Ledger CDN
Actions API
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 8. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
ملخص التقرير

check-hardware.org — خطأ في الخادم (HTTP 502). انتحال العلامة التجارية: Ledger; نوع الاحتيال: Impersonation. ملخص الأدلة: VirusTotal 8/89 (alphaMountain.ai, CRDF, Emsisoft, Fortinet, Gridinsoft); URLScan malicious verdict; Spamhaus DBL_PHISH; CF Radar malicious; PhishDestroy score 100/100. مسجّل النطاق: Hosting Concepts.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة

حرج
الدرجة
100/100

PhishDestroy first observed check-hardware.org on Sep 16, 2026. Stored content metadata identifies Ledger as the apparent target. The captured page title is “Wallet - Ledger”. Stored page analysis classifies the content as impersonation. Current evidence score: 100/100 (critical).

Positive findings are stored from 4 sources: VirusTotal, Spamhaus DBL, Cloudflare Radar, and URLScan. VirusTotal recorded 8 detections among 89 engines: alphaMountain.ai, CRDF, Emsisoft, Fortinet, Gridinsoft, Netcraft, SOCRadar, Webroot on Sep 18, 2026 at 14:59 UTC. Spamhaus DBL: DBL_PHISH on Sep 16, 2026 at 10:30 UTC. Cloudflare Radar classified the hostname as malicious and placed it in the phishing category; its verdict timestamp was not retained. URLScan returned a malicious verdict with score 100; scan metadata linked the capture to Ledger and assigned phishing as its category on Sep 19, 2026 at 03:33 UTC. Non-positive and contextual checks: AlienVault OTX listed 2 community pulse references (not vendor detections) on Sep 18, 2026 at 15:00 UTC. The separate external-blocklist snapshot contained no matches on Sep 20, 2026 at 18:20 UTC. Google Safe Browsing returned no flag on Sep 18, 2026 at 14:59 UTC.

HTTP 502 server error was recorded on Sep 20, 2026 at 22:01 UTC. Registration records for the domain list Hosting Concepts B.V. d/b/a Registrar.eu as the registrar and Sep 14, 2026 as the creation date. Registration preceded first observation by 2 days. At collection time, the hostname resolved to 94.154.35.225 on AS202412 (Omegatech LTD). The IP and ASN identify shared Cloudflare edge infrastructure; the origin server is not established by this address. The evidence archive retains 1 visual capture from PhishDestroy. TLS metadata lists YE1 as the certificate issuer.

The content indicators and 4 positive source findings support the current Ledger-themed impersonation classification.

VirusTotal
VirusTotal
8 det.
OTX references
رادار CF
ضار
شهادة TLS
منتهية الصلاحية أو غير متحقق منها
العمر
6d Brand New!
الحالة المرصودة
خطأ في الخادم 502
PhishDestroy
قائمة الإتلاف
مدرج
نطاق تغطية البيانات VirusTotal 8 / 89 OTX 2 community references رادار CF provider verdict: malicious URLScan capture التقرير المخزن URLScan verdict malicious TLS منتهية الصلاحية أو غير متحقق منها WHOIS 6d old لقطة شاشة لقطة خارجية
استخبارات أمن الشبكات
CF Cloudflare Radar Verdict ضار
Phishing

Forensic History & Detection Timeline

This timeline displays historical security and status checkpoints observed by the PhishDestroy automated monitoring network. It records domain lifecycle updates, scanner changes, and threat telemetry over time.
  1. VirusTotal Detections Update Sep 17, 2026 · 18:05 UTC
    VirusTotal scanner detections updated from 7 to 8. Added scanner alerts: Gridinsoft.
  2. VirusTotal Detections Update Sep 17, 2026 · 06:50 UTC
    VirusTotal scanner detections updated from 6 to 7. Added scanner alerts: SOCRadar.
  3. Threat First Observed Sep 16, 2026 · 09:26 UTC
    Domain ingestion complete. Initial state is marked as unknown pointing to IP 94.154.35.225.

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
14/16

حالة قوائم الحظر العامة

Evasion analysis

Cloaking & traffic-distribution check

Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.

Stored cloaking flag
Not yet scanned
Last cloaking scan

Scanner note: transient_502: raw=transient_502; http=502; via=http_proxy

Live TDS fingerprint check
Seven Keitaro fingerprints plus a crawler-versus-browser comparison, run from the PhishDestroy scanner when this section scrolls into view.
Waiting

لقطة محفوظة · 1 source

معلومات النطاق

النطاق
URLScan Verdict ضار score 100 Phishing brand: Ledger report ↗
الخادم / ASN cloudflare · AS202412 Omegatech LTD
IP Context Cloudflare shared edge origin IP hidden لا تُنسب سمعة Edge-IP إلى هذا المجال.
OTX Tags 2026-09all-domainsblocklistcryptoالمجالاتdrainerfraudmonthlyphishdestroyphishingscam
مسجّل النطاق Hosting Concepts NL(NL)
عنوان IP 94.154.35.225 CDN
الموقع الجغرافيNL Amsterdam, NL
الشبكةAS202412 · Individual entrepreneur Dyachenko Valentina Ivanovna
يتم إخفاء عنوان IP الأصلي خلف وكيل CDN. تحتوي نتائج IP العكسي لعنوان الحافة على مستأجرين غير مرتبطين؛ يتطلب العثور على المصدر نظام أسماء النطاقات السلبي أو بيانات شفافية الشهادة.
التسجيلتم إنشاؤه 14/09/2026 (6d · Brand New!)
حالة HTTP502 Error
التفاصيل التقنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف16/09/2026
IoC Extractionscanned 17/09/20260 wallet · 0 Telegram IoCs
Submitted URLhttps://check-hardware.org/?… query redacted
عنوان الصفحة
Wallet - Ledger
شهادة TLS
منتهية الصلاحية أو غير متحقق منها · صادرة عن YE1
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

8 / قام موردو الأمان 89 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 8 detections
alphaMountain.ai
CRDF
Emsisoft
Fortinet
Gridinsoft
نتكرافت
SOCRadar
Webroot

نطاقات متشابهة

١٥١ نطاقًا متشابهًا محفوظًا

عرض الكل (88)
eldger.com transposition kedger.com replacement kledger.com insertion l3dger.com replacement ldeger.com transposition ldger.com omission le.dger.com subdomain lecger.com replacement ledber.com replacement ledegr.com transposition leder.com omission ledg3r.com replacement ledge.com omission ledged.com replacement ledgedr.com insertion ledgee.com replacement ledgeer.com repetition ledgercom.com various ledget.com replacement ledgewr.com insertion ledgger.com repetition ledgir.com vowel-swap ledgor.com vowel-swap ledgr.com omission ledgre.com transposition ledgrer.com insertion ledgsr.com replacement ledgwer.com insertion ledgwr.com replacement ledher.com replacement ledhger.com insertion ledsger.com insertion ledtger.com insertion ledyer.com replacement ledzer.com replacement leedger.com insertion legder.com transposition leger.com omission lerdger.com insertion lerger.com replacement lesger.com replacement lewdger.com insertion lidger.com vowel-swap lledger.com repetition lodger.com vowel-swap lrdger.com replacement lsdger.com replacement oedger.com replacement pedger.com replacement pledger.com insertion dedger.com bitsquatting hedger.com bitsquatting iedger.com homoglyph l-edger.com hyphenation ladger.com bitsquatting lcdlger.com homoglyph lddger.com bitsquatting lebger.com homoglyph leclger.com homoglyph ledcer.com bitsquatting leddger.com insertion ledeer.com bitsquatting ledeger.com insertion ledfer.com bitsquatting ledg-er.com hyphenation ledgar.com bitsquatting ledger0.com addition ledger1.com addition ledger4.com addition ledger5.com addition ledger6.com addition ledgerb.com addition ledgerc.com addition ledgerf.com addition ledgeri.com addition ledgern.com addition ledgerq.com addition ledgerx.com addition ledges.com bitsquatting ledgez.com bitsquatting ledgur.com bitsquatting lediger.com homoglyph ledqer.com homoglyph leeger.com bitsquatting leelger.com homoglyph lefger.com bitsquatting letger.com bitsquatting ludger.com bitsquatting

عرض 100 من 151

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/check-hardware.org"
  title="PhishDestroy threat report for check-hardware.org"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>