start-ledjer-ion[.]pages[.]dev
start-ledjer-ion.pages.dev 피싱 및 보안 점검
“Ledger Getting Started Hub | Secure Your Crypto”
start-ledjer-ion.pages.dev — 마지막으로 알려진 활성 (HTTP 200). 브랜드 사칭: Ledger; 사기 유형: Brand Impersonation. 증거 요약: VirusTotal 9/91 (alphaMountain.ai, BitDefender, ESET, Fortinet, G-Data); URLScan malicious verdict; PhishDestroy score 92/100. 등록기관: Cloudflare.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
Evidence Analysis
PhishDestroy has flagged start-ledjer-ion.pages.dev as an active phishing domain designed to mimic Ledger’s login portal. This fraudulent page attempts to trick users into entering their seed phrases or private keys, potentially granting cybercriminals full access to their cryptocurrency wallets. The domain leverages Cloudflare’s infrastructure and a Google-issued SSL certificate to appear legitimate, increasing the risk of successful deception. Users who land on this page may unknowingly surrender control of their digital assets to threat actors.
This domain was flagged during routine threat intelligence analysis, revealing key details about its origins and infrastructure. According to VirusTotal scans, the site currently shows 0 detections out of 95 security engines, indicating it remains under the radar of most antivirus solutions. The domain resolves to IP address 188.114.97.3 and is registered through Cloudflare, Inc., a common tactic among phishing operators to obscure their true hosting locations. While the exact registration date is not specified in available data, the use of Cloudflare’s Pages.dev service suggests recent deployment, likely within the past few months.
If you or someone you know has visited start-ledjer-ion.pages.dev, take immediate action to secure your Ledger wallet. Disconnect any devices that may have interacted with the site and avoid entering any sensitive information, including seed phrases or passwords. Review your wallet’s transaction history for unauthorized activity and consider transferring funds to a new, secure wallet if any suspicious transactions are detected. Report the domain to your cybersecurity team or platform provider to help prevent further exploitation. Staying vigilant and verifying URLs before entering credentials can significantly reduce the risk of falling victim to similar phishing campaigns.
데이터 적용 범위12 recorded checks
네트워크 보안 인텔리전스
위협 대응 Pipeline
공개 차단 목록 상태
사용 기술 · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 신뢰도 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 신뢰도 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 신뢰도 100%VirusTotal 분석
사이트 성능 분석
Google PageSpeed Insights — mobile performance audit of start-ledjer-ion.pages.dev · checked Apr 29, 2026
증거 및 외부 보고서Independent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.