ledger-connect[.]pages[.]dev
ledger-connect.pages.dev 피싱 및 보안 점검
“Suspected phishing site | Cloudflare”
ledger-connect.pages.dev — 콘텐츠를 사용할 수 없음 (HTTP 502). 브랜드 사칭: Ledger; 사기 유형: Crypto Scam. 증거 요약: VT 11/93 (alphaMountain.ai, BitDefender, CyRadar, Forcepoint ThreatSeeker, Fortinet); URLQuery 0; URLScan malicious; GSB no flag; BL 0; PD 83/100. 등록기관: Cloudflare.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
ledger-connect.pages.dev is a tenant hostname on Cloudflare, not a separately registered domain. PhishDestroy first recorded this hostname on Feb 26, 2026. The hostname explicitly references Ledger and uses “connect,” a pattern consistent with a wallet-connection lure; stored content metadata identifies the same apparent target. The stored content classification is crypto scam. The assembled evidence scores 83/100 (high).
Two independent sources are positive: VirusTotal and URLScan. VirusTotal recorded 11 detections among 93 engines: alphaMountain.ai, BitDefender, CyRadar, Forcepoint ThreatSeeker, Fortinet, G-Data, Lionic, Phishing Database, Sophos, VIPRE, Webroot on Jul 18, 2026 at 20:45 UTC. URLScan returned a malicious verdict with score 100 on Mar 27, 2026 at 12:41 UTC. The evidence is not unanimous. The external blocklist snapshot contained no matches on Aug 7, 2026 at 14:20 UTC. URLQuery recorded no positive detection on Sep 12, 2025 at 00:41 UTC. Google Safe Browsing returned no flag on Mar 2, 2026 at 20:55 UTC.
HTTP 502 was recorded on Aug 7, 2026 at 01:03 UTC; content was unavailable. Cloudflare is the hosting platform for this tenant, not its registrar. At collection time, the hostname resolved to 2606:4700:310c::ac42:2f95 on AS13335 (CLOUDFLARENET, US). The associated network metadata labels the endpoint as AS13335 Cloudflare, Inc. in San Francisco, US. This is shared platform infrastructure; the IP and ASN are hosting context, not attribution to unrelated tenants. The stored server header is cloudflare. Captured page title: “Suspected phishing site | Cloudflare”. The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and URLQuery. IoC extraction completed on Aug 2, 2026 at 04:04 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators.
Taken together, the page content and independent findings support classifying this hostname as Ledger-themed wallet-connection phishing.
위협 대응 Pipeline
공개 차단 목록 상태
VirusTotal 분석
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.