connect-ledge-engg[.]pages[.]dev
“Ledger Crypto Wallet - Security for DeFi & Web3”
connect-ledge-engg.pages.dev — Conteúdo indisponível. Representação da marca: Aave; Tipo de golpe: Crypto Drainer. Resumo das evidências: VirusTotal 11/95 (alphaMountain.ai, BitDefender, CyRadar, ESET, Fortinet); URLScan malicious verdict; PhishDestroy score 93/100. Registrador: Cloudflare.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
The domain connect-ledge-engg.pages.dev is identified as a brand impersonation threat targeting Aave, a decentralized finance protocol, while falsely presenting itself as an official Ledger crypto wallet interface. Analysis confirms the domain is currently offline, though prior activity suggests it was designed to deceive users into interacting with fraudulent Web3 or DeFi services. The page title, 'Ledger Crypto Wallet - Security for DeFi & Web3,' directly misrepresents both Ledger and Aave branding to exploit trust in established crypto security and lending platforms. Infrastructure analysis reveals the domain was created on September 02, 2025, and registered through Cloudflare, Inc. It resolves to the IP address 172.66.47.185, hosted on Cloudflare’s network (AS13335) in the United States. Security vendors on VirusTotal flagged the domain, with 11 out of 95 engines detecting malicious or suspicious behavior. The domain appears on one security blocklist and is associated with an SSL certificate issued by Cloudflare TLS Issuing ECC CA 3. These indicators, combined with the domain’s abrupt takedown, suggest coordinated malicious intent rather than legitimate use. Organizations and users are advised to treat this domain as compromised and implement proactive defenses. Block the domain and its resolving IP (172.66.47.185) at the network level, and update endpoint protection rules to include the domain in denylists. Monitor for related infrastructure, such as subdomains or newly registered lookalike domains, particularly those leveraging Cloudflare Pages or similar hosting services. Users who may have interacted with the domain should revoke any connected wallet permissions, rotate credentials, and scan devices for unauthorized access or malware. Given the domain’s association with DeFi impersonation, heightened scrutiny of smart contract interactions and transaction approvals is strongly recommended.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Inteligência forense
Tecnologias · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of connect-ledge-engg.pages.dev · checked Mar 6, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo