faqs-live-ledgr[.]pages[.]dev
“Suspected phishing site | Cloudflare”
ملاحظة محفوظة
تباين العناوين المرصود
PhishDestroy identifies faqs-live-ledgr.pages.dev as an active crypto drainer phishing domain under investigation for high-risk wallet-targeting scams. This domain resolves to IP 188.114.97.3 and leverages Google Trust Services SSL certificates to appear legitimate while hosted on Cloudflare infrastructure. Currently undetected by VirusTotal scanners (7/95 detections), it remains unlisted on major blocklists despite its fraudulent nature. The domain's recent creation through Cloudflare's pages.dev service suggests opportunistic deployment to bypass traditional security measures. This domain exhibits multiple technical indicators of malicious intent, including its specific threat type as a crypto drainer designed to exfiltrate cryptocurrency wallet credentials and assets. VirusTotal analysis shows complete absence of detection despite 95 scan engines, while the Google-issued SSL certificate provides false legitimacy to potential victims. The 188.114.97.3 IP address belongs to Cloudflare's hosting infrastructure, which has become increasingly favored by threat actors for its anonymity protections. Notably, the domain's registration through Cloudflare Pages indicates intentional obfuscation of the true hosting origin. Users should immediately cease all interaction with faqs-live-ledgr.pages.dev and verify any similar domains using PhishDestroy's threat intelligence database. This domain specifically targets cryptocurrency holders through fake Ledger FAQ pages, making it particularly dangerous for users seeking legitimate support. The complete lack of VirusTotal detection (7/95) demonstrates the sophistication of this attack vector. Mitigation requires checking wallet addresses against known drainer signatures, never entering recovery phrases on suspicious sites, and reporting wallet transactions to relevant blockchain monitoring services. Consider revoking any exposed wallet approvals through blockchain explorers and transferring remaining funds to cold storage immediately upon suspicion of compromise.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
10 مصادر · تمت المزامنة في 10/08/2026
الاستخبارات الجنائية الرقمية
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of faqs-live-ledgr.pages.dev · checked Apr 4, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب