ledjrwalat--enn[.]pages[.]dev
“ledjrwalat--enn.pages.dev”
ledjrwalat--enn.pages.dev — Conteúdo indisponível. Tipo de golpe: Credential Phishing. Resumo das evidências: VirusTotal 3/91 (ADMINUSLabs, ESET, Fortinet); PhishDestroy score 65/100. Registrador: Cloudflare.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, ledjrwalat--enn.pages.dev, is identified as a phishing resource designed to harvest cryptocurrency wallet login credentials. Analysis indicates the page mimics legitimate wallet authentication interfaces, likely targeting users of decentralized finance platforms or browser-based wallet extensions. The domain exhibits characteristics consistent with credential theft campaigns, including obfuscated JavaScript and form submission redirection to attacker-controlled endpoints. No specific drainer kit signatures were conclusively identified, but the infrastructure aligns with known phishing toolkits used in prior wallet credential theft operations. Infrastructure analysis reveals the domain resolves to the IP address 172.66.44.76, hosted under Cloudflare, Inc. as the registrar. The domain was registered on May 06, 2026, though this date may reflect a placeholder or misconfiguration, as it predates the current year. The SSL certificate is issued by Google Trust Services, providing encrypted connections to deceive users. Detection metrics show 3 out of 95 security vendors flagged the domain on VirusTotal, while it appears on one security blocklist. Google Safe Browsing status was not explicitly provided, but the domain has been taken offline, suggesting mitigation efforts. Current status indicates the domain is offline, likely due to takedown actions or suspension by the hosting provider. Despite its inactive state, residual risk persists for users who may have interacted with the domain prior to its removal. Organizations and individuals are advised to monitor for unauthorized access attempts on cryptocurrency wallets and implement multi-factor authentication where available. Network administrators should update blocklists to include the domain and associated IP address to prevent future exposure. Users who entered credentials on this domain should immediately transfer assets to new wallets and revoke any compromised session tokens.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of ledjrwalat--enn.pages.dev · checked Jun 26, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo