start-ledjer-ion[.]pages[.]dev
فحص التصيد والأمان للنطاق start-ledjer-ion.pages.dev
“Ledger Getting Started Hub | Secure Your Crypto”
start-ledjer-ion.pages.dev — آخر نشاط معروف (HTTP 200). انتحال العلامة التجارية: Ledger; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 9/91 (alphaMountain.ai, BitDefender, ESET, Fortinet, G-Data); URLScan malicious verdict; PhishDestroy score 92/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy has flagged start-ledjer-ion.pages.dev as an active phishing domain designed to mimic Ledger’s login portal. This fraudulent page attempts to trick users into entering their seed phrases or private keys, potentially granting cybercriminals full access to their cryptocurrency wallets. The domain leverages Cloudflare’s infrastructure and a Google-issued SSL certificate to appear legitimate, increasing the risk of successful deception. Users who land on this page may unknowingly surrender control of their digital assets to threat actors.
This domain was flagged during routine threat intelligence analysis, revealing key details about its origins and infrastructure. According to VirusTotal scans, the site currently shows 0 detections out of 95 security engines, indicating it remains under the radar of most antivirus solutions. The domain resolves to IP address 188.114.97.3 and is registered through Cloudflare, Inc., a common tactic among phishing operators to obscure their true hosting locations. While the exact registration date is not specified in available data, the use of Cloudflare’s Pages.dev service suggests recent deployment, likely within the past few months.
If you or someone you know has visited start-ledjer-ion.pages.dev, take immediate action to secure your Ledger wallet. Disconnect any devices that may have interacted with the site and avoid entering any sensitive information, including seed phrases or passwords. Review your wallet’s transaction history for unauthorized activity and consider transferring funds to a new, secure wallet if any suspicious transactions are detected. Report the domain to your cybersecurity team or platform provider to help prevent further exploitation. Staying vigilant and verifying URLs before entering credentials can significantly reduce the risk of falling victim to similar phishing campaigns.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org ثقة 100٪Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of start-ledjer-ion.pages.dev · checked Apr 29, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب