MALICIOUS — CRITICAL
hubledjer[.]pages[.]dev
13 of 94 security engines flagged the domain; the latest stored check returned HTTP 403.
- VirusTotal
- 13/94
- Blocklists
- No stored match
- Disponibilità
- Raggiungibile · accesso limitato · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
hubledjer.pages.dev — Raggiungibile · accesso limitato (HTTP 403). Simulazione del marchio: Ledger; Tipo di truffa: Crypto Scam. Riepilogo delle prove: VirusTotal 13/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, Emsisoft); URLScan malicious verdict; PhishDestroy score 94/100. Registrar: Cloudflare.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Digest
hubledjer.pages.dev is classified critical with an evidence score of 94/100. 13 of 94 security engines flagged the domain. Registration metadata recorded via Cloudflare, Inc., hosted on 188.114.97.3 (Cloudflare, Inc., CA). The latest stored check on 9 Aug 2026 returned HTTP 403 and includes a capture.
Stored generated summary (templated)openai · 07/07/2026
Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.
This domain is flagged for elevated-risk brand impersonation targeting Ledger, a cryptocurrency hardware wallet provider. The threat involves distributing a counterfeit desktop client under the guise of "Ledger Desktop – Multi-Platform Support," designed to harvest credentials or deploy malicious payloads to compromise crypto assets. Analysis of the infrastructure reveals the domain hubledjer.pages.dev was registered on March 23, 2026, through Cloudflare, Inc., and resolves to the IP address 188.114.97.3, hosted in Canada under Cloudflare’s network. The SSL certificate is issued by Google Trust Services (WE1), a common characteristic of legitimate-looking phishing sites. Security vendors on VirusTotal flagged this domain at a ratio of 13/95, and it appears on one security blocklist. The page title explicitly mimics Ledger’s official branding, increasing the likelihood of successful deception among users seeking legitimate wallet software. Mitigation requires immediate action from security teams and end users. Organizations should block the domain and its resolving IP (188.114.97.3) at the network level, while users must verify software authenticity exclusively through Ledger’s official website. Cryptocurrency holders should enable multi-factor authentication on all accounts and scrutinize download sources, particularly for desktop clients. If exposure is suspected, users should disconnect affected devices from networks, revoke wallet session access, and conduct a full security audit to detect unauthorized transactions or malware.
Copertura dei dati12 recorded checks
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Informazioni forensi
Tecnologie · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of hubledjer.pages.dev · checked Mar 22, 2026
Dati e relazioni esterneIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.