walt-live-ledgr-info-use[.]pages[.]dev
“Suspected phishing site | Cloudflare”
walt-live-ledgr-info-use.pages.dev — المحتوى غير متوفر. انتحال العلامة التجارية: Ledger; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 8/94 (BitDefender, Emsisoft, Fortinet, G-Data, Kaspersky); URLScan malicious verdict; PhishDestroy score 79/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy identifies walt-live-ledgr-info-use.pages.dev as an active generic phishing domain impersonating Ledger Live crypto wallet support pages. The domain leverages Cloudflare’s infrastructure and a Google Trust Services SSL certificate to appear legitimate, suggesting a drainer kit designed to harvest user credentials or seed phrases under the guise of technical support or firmware updates. This type of attack typically targets cryptocurrency users by presenting fake “live” status pages or support portals that mimic official Ledger domains, aiming to trick victims into disclosing sensitive information during urgent-sounding prompts. This domain resolves to IP address 172.66.47.27 and is registered through Cloudflare, Inc. VirusTotal currently shows 11 out of 95 antivirus engines detecting the domain, indicating it remains under the radar of most automated scanning tools. The domain uses a valid SSL certificate issued by Google Trust Services, which enhances its credibility and reduces immediate suspicion from users. At this stage, the domain has not been widely blocklisted, and its creation date is recent, with no long-term reputation to flag it as malicious. These factors suggest a newly deployed campaign with high potential for evasion and increased reach among unsuspecting victims. As of this report, the domain remains active and under investigation, with no immediate takedown action confirmed. Cloudflare has not yet suspended the domain, and Google Safe Browsing (GSB) has not flagged it—likely due to low detection rates and the use of legitimate infrastructure. Users should avoid accessing this domain and report it immediately to their security teams or browser vendors. The risk remains high until blocklists are updated and automated detection improves. PhishDestroy advises blocking 172.66.47.27 at the network level and monitoring for similar domains leveraging Cloudflare Workers or Pages to host phishing content.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
الاستخبارات الجنائية الرقمية
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of walt-live-ledgr-info-use.pages.dev · checked Apr 8, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب