ldger-wallet-hub[.]pages[.]dev
“Ledger Wallet | Ultimate Crypto Security”
ملخص الأدلة
This domain is flagged as a high-risk brand impersonation threat targeting Ledger, a cryptocurrency hardware wallet provider. Analysis indicates the site is designed to deceive users into believing they are interacting with legitimate Ledger infrastructure, potentially leading to credential theft, unauthorized asset transfers, or malware distribution under the guise of crypto security tools. Infrastructure analysis reveals the domain ldger-wallet-hub.pages.dev was registered on April 28, 2026, through Cloudflare, Inc. It resolves to IP address 172.66.46.230, hosted in Canada under Cloudflare’s network. The page title, 'Ledger Wallet | Ultimate Crypto Security,' directly mimics Ledger’s branding. Security telemetry shows 15 out of 95 vendors on VirusTotal flag the domain as malicious. The domain appears on one security blocklist and is currently active, utilizing an SSL certificate issued by Google Trust Services (WE1). The use of Cloudflare hosting and a legitimate-looking SSL certificate increases the domain’s apparent authenticity, complicating user detection. Mitigation requires immediate blocking of the domain and associated IP across all network security controls. Users should be alerted to verify domain authenticity before entering credentials or connecting wallets, particularly when prompted by unsolicited links. Security teams should monitor for connections to 172.66.46.230 and review logs for interactions with ldger-wallet-hub.pages.dev. Cryptocurrency holders should enable hardware-based two-factor authentication and avoid interacting with wallet-related sites not directly accessed via official Ledger channels. Organizations should update endpoint detection rules to flag domains containing 'ledger' or 'wallet' in subdomains hosted on pages.dev or similar content delivery platforms.
Data Coverage
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | ldger-wallet-hub.pages.dev |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 13/08/2026
التقنيات
حُدّدت ٣ تقنيات عالية الثقة
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب