ledger-com-start-ai[.]pages[.]dev
“Suspected phishing site | Cloudflare”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
Analysis of ledger-com-start-ai.pages.dev indicates a brand impersonation campaign targeting Ledger, a cryptocurrency hardware wallet provider. The domain was registered on February 21, 2026, through Cloudflare, Inc., and uses Cloudflare nameservers (elijah.ns.cloudflare.com, martha.ns.cloudflare.com). Infrastructure analysis reveals hosting on Cloudflare's network (AS13335) with an IP resolution of 172.66.47.101, located in the US. The SSL certificate is issued by Google Trust Services (WE1), a common configuration for Cloudflare-hosted domains.
Security vendor detections are limited but notable: 8 of 93 engines on VirusTotal flagged the domain at the time of scanning. The domain appears on at least one security blocklist (PhishDestroy) and is classified as a crypto scam. Trust scores from Gridinsoft (0/100) and Scamadviser (10/100) further support its malicious classification. The page title, 'Suspected phishing site | Cloudflare,' aligns with its current offline status, returning an HTTP 403 error.
While the domain is currently inaccessible, its infrastructure and historical indicators suggest it was designed to deceive users into interacting with a fraudulent Ledger interface, likely aiming to harvest credentials or private keys. Defenders should treat this domain as compromised and maintain blocks on all associated infrastructure, including the resolved IP and Cloudflare nameservers. No evidence of a phishing kit or additional page content is available for analysis. Monitoring for re-emergence under similar subdomains or Cloudflare Pages configurations is recommended.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
المخطط الزمني للاكتشاف
التقنيات
حُدّدت ٣ تقنيات عالية الثقة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of ledger-com-start-ai.pages.dev · checked Apr 13, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب