ledger-liv-e-3vq[.]pages[.]dev
“Suspected phishing site | Cloudflare”
Riepilogo delle prove
The domain ledger-liv-e-3vq.pages.dev was registered on February 21, 2026 through Cloudflare, Inc. and resolves to the IP address 188.114.97.3, which belongs to AS13335 Cloudflare, Inc. in the United States. A TLS certificate issued by SSL Corporation under the Cloudflare TLS Issuing ECC CA 3 chain secures the host, and the site presents a HTTP 403 response with a Cloudflare‑generated page titled “Suspected phishing site | Cloudflare”. The infrastructure employs HSTS, Cloudflare services, and HTTP/3, indicating a modern delivery stack. Reputation signals are extremely poor: Scamadviser assigns a trust score of 1 / 100, Gridinsoft reports 0 / 100, and the domain appears on a single security blocklist.
VirusTotal analysis shows that 14 out of 93 scanned security vendors flagged the domain, reinforcing the malicious assessment. The site is classified as a “Crypto Scam” and explicitly impersonates the Ledger brand, which is corroborated by the “Impersonates: Ledger” indicator. Defensive actions taken by the community include a block by PhishDestroy and the current offline status, as reflected by the HTTP 403 page.
Defenders should continue to deny traffic to the IP 188.114.97.3, add the fully‑qualified domain name to URL filtering and DNS blocklists, and monitor for any rapid re‑registration attempts that might reuse the same naming pattern. Analysts should also watch for related domains using the same Cloudflare nameservers (meg.ns.cloudflare.com, zahir.ns.cloudflare.com) or similar certificate issuers, as these may indicate a shared campaign infrastructure. Because the domain is already taken offline, immediate incident response focus should shift to detecting any credential harvesting attempts that may have originated while the site was active, and to informing Ledger users of the impersonation attempt through trusted communication channels.
Data Coverage
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 13/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Cronologia del rilevamento
-
Cloudflare Radar
Scansione Cloudflare Radar archiviata · Apri scansione
-
Stato del dominio
Raggiungibile → Non raggiungibile
-
Cloudflare Radar
Scansione Cloudflare Radar archiviata · Apri scansione
Informazioni forensi
Tecnologie
3 tecnologie identificate con alta affidabilità
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of ledger-liv-e-3vq.pages.dev · checked Apr 13, 2026
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo