walet-ledgr-os[.]pages[.]dev
“Ledger Wallet – Getting Started | Developer Portal”
साक्ष्य सारांश
Analysis of walet-ledgr-os.pages.dev shows an active infrastructure used to impersonate the Ledger brand. The domain was registered on April 27, 2026 through Cloudflare, Inc. and is served from the Cloudflare network (IP 172.66.45.43, located in Canada). DNS resolution uses Cloudflare nameservers bruce.ns.cloudflare.com and cortney.ns.cloudflare.com. The site enforces HSTS, supports HTTP/3, and presents a Google Trust Services / WE1 SSL certificate, indicating a legitimate‑looking TLS layer. The HTTP response returns status code 200 and the page title observed is "Ledger Wallet – Getting Started | Developer Portal," directly referencing Ledger and confirming the brand‑impersonation intent. Security telemetry flags the domain as high‑risk: it appears on one blocklist, is blocked by PhishDestroy, and 11 of 91 VirusTotal scanners have flagged it. The Gridinsoft trust score of 0/100 further underscores malicious confidence. While the exact content of the page has not been examined, the combination of recent registration, targeted page title, and multiple detections points to a credential‑harvesting campaign aimed at Ledger users. Defenders should immediately block the domain at network perimeters, add it to URL filtering and email security policies, and monitor for similar sub‑domains using the same Cloudflare nameserver pattern. Ongoing threat‑intel feeds should be consulted for any emerging indicators related to Ledger impersonation, and incident response teams should be prepared to handle potential credential exposure reports from affected users.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 12/08/2026
तकनीकें
3 उच्च-विश्वसनीयता वाली तकनीकें पहचानी गईं
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of walet-ledgr-os.pages.dev · checked Apr 27, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।