started-ledgrio[.]pages[.]dev
Analyse phishing et sécurité de started-ledgrio.pages.dev
“Ledger Live - Secure Crypto Management Application”
started-ledgrio.pages.dev — Dernier actif connu (HTTP 200). Usurpation de l'identité de la marque : Ledger; Type d'arnaque : Brand Impersonation. Résumé des preuves: VirusTotal 10/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, Ermes); PhishDestroy score 95/100. Bureau d’enregistrement: Cloudflare.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain started-ledgrio.pages.dev has been identified as a high-risk online threat, specifically targeting users through brand impersonation of Ledger. This type of threat is particularly concerning as it seeks to exploit user trust in a well-known brand for potential financial gain, often through fraudulent activities like harvesting credentials or conducting crypto drainers. The domain's active status further heightens the urgency for its containment and mitigation.
In-depth analysis of the domain reveals several technical indicators confirming the threat. The domain was registered through Cloudflare, Inc. and has been operational since April 29, 2026. It is associated with the IP address 172.66.44.79, located in Canada. At present, the domain is recognized on at least one security blocklist and achieves a detection rate of 2 out of 95 security vendors on VirusTotal. Additionally, SSL certificate verification shows it is issued by Google Trust Services / WE1. These factors collectively signify a sophisticated attempt at brand impersonation.
To mitigate the risks posed by this domain, immediate steps should be taken. Users should be advised to verify URLs carefully when accessing brand websites, especially for finance-related services. Employing endpoint protection solutions that identify and block such domains can further safeguard users. Regular monitoring and updating of blocklists are crucial in keeping pace with new malicious registrations. Entities responsible for the targeted brand may also pursue legal recourse or takedown procedures against the malicious domain to protect consumers effectively.
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Technologies · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confiance à 100 %Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Confiance à 100 %HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confiance à 100 %Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif