# ledgercom-start-get.pages.dev — SUSPICIOUS > ledgercom-start-get.pages.dev impersonates Ledger crypto wallets with 1/95 VirusTotal detections. Users risk credential theft if they enter data here. ## Summary PhishDestroy identifies ledgercom-start-get.pages.dev as an active brand impersonation site targeting Ledger cryptocurrency wallet users. This fraudulent domain mimics Ledger’s official branding to trick visitors into revealing sensitive account details or seed phrases, potentially enabling cryptocurrency theft. The page is hosted on Cloudflare Pages with IP 172.66.47.117 and is secured by a Google Trust Services SSL certificate. This domain was flagged by only 1 out of 95 VirusTotal security vendors, highlighting the difficulty users face in identifying such sophisticated impersonation attempts. Registered through Cloudflare, Inc., the site leverages Pages.dev infrastructure to appear legitimate at first glance. The low detection rate underscores why vigilant verification is critical before entering any personal or financial information. If you visited ledgercom-start-get.pages.dev, do not enter any credentials or cryptocurrency wallet details. Immediately disconnect from the site and scan your device for malware. Check your Ledger account for unauthorized transactions and enable two-factor authentication. Report the domain to PhishDestroy and Ledger’s official support channels to help protect other users from this elevated-risk threat. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) - Target brand: Ledger ## Domain Intelligence - Registrar: Cloudflare, Inc. - IP: 172.66.47.117 ## Detection Status - VirusTotal: 1 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/66405f3a-53ae-4250-b89a-2bb10f9ee155 - PhishDestroy: https://phishdestroy.io/domain/ledgercom-start-get.pages.dev/ - LLM endpoint: https://phishdestroy.io/domain/ledgercom-start-get.pages.dev/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/ledgercom-start-get.pages.dev/ Last updated: 2026-04-01