# bridge-terzors-cdn-io.pages.dev — SUSPICIOUS > bridge-terzors-cdn-io.pages.dev is a fake Ledger wallet crypto drainer. Verify this domain on PhishDestroy before entering any crypto wallet data — 0/95. ## Summary PhishDestroy identifies bridge-terzors-cdn-io.pages.dev as an active crypto drainer impersonating Ledger hardware wallets. The domain is currently under investigation and poses a direct threat to cryptocurrency users seeking to connect their wallets. This site should be treated as malicious until further analysis confirms otherwise. This domain resolves to IP 188.114.97.3 and operates under a Google Trust Services SSL certificate. It is registered through Cloudflare, Inc., a common choice for malicious actors leveraging legitimate infrastructure to evade detection. As of the latest scan, VirusTotal shows 0/95 security vendors flagging this domain, indicating it remains undetected by most automated systems. The lack of blocklist entries further suggests this threat is still emerging. Users should not rely on third-party blocklists alone for protection. To mitigate risks, users must verify this domain on PhishDestroy before entering any wallet credentials or connecting their Ledger device. Avoid interacting with unsolicited wallet connection requests, especially those claiming to offer firmware updates or account recovery. Always cross-check URLs against official Ledger domains (ledger.com) and use hardware wallet verification for transactions. If exposure occurs, revoke any connected permissions immediately and transfer funds to a secure wallet as a precaution. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registrar: Cloudflare, Inc. - IP: 188.114.97.3 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/4a5a8446-5647-41ff-9fc0-effaaf0f6ed9 - PhishDestroy: https://phishdestroy.io/domain/bridge-terzors-cdn-io.pages.dev/ - LLM endpoint: https://phishdestroy.io/domain/bridge-terzors-cdn-io.pages.dev/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/bridge-terzors-cdn-io.pages.dev/ Last updated: 2026-03-22