MALICIOUS — CRITICAL
Проверка домена ledgers-wallet.pages.dev на фишинг и безопасность
ledgers-wallet[.]
The domain ledgers-wallet.pages.dev was identified on 24 July 2026 as a brand‑impersonation site targeting Ledger users.
- VirusTotal
- 10/93
- Blocklists
- No stored match
- Доступность
- Доступен · доступ ограничен · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
ledgers-wallet.pages.dev — Доступен · доступ ограничен (HTTP 403). Олицетворение бренда: Ledger; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 10/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, Fortinet); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 85/100. Регистратор: Cloudflare.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Evidence Analysis
The domain ledgers-wallet.pages.dev was identified on 24 July 2026 as a brand‑impersonation site targeting Ledger users. Registration records show it was created on 2 September 2020 and is hosted through Cloudflare, Inc., using the authoritative nameservers adi.ns.cloudflare.com and karl.ns.cloudflare.com. The domain resolves to IP address 172.66.44.236, an address owned by AS13335 Cloudflare, Inc. in the United States. An HTTPS connection is presented with a certificate issued by Google Trust Services under the WE1 identifier, indicating a valid TLS chain despite the malicious intent.
The web server returned HTTP status code 403, and the page title reported by the host is "Suspected phishing site | Cloudflare," which aligns with the observed brand‑targeting behavior. Technical fingerprints include enforcement of HSTS, deployment of Cloudflare services, and support for HTTP/3. Reputation checks recorded a Scamadviser trust score of 10 out of 100 and a Gridinsoft score of 0 out of 100, both reflecting a high risk posture. VirusTotal analysis flagged the domain in 10 of 93 security vendor scans, and the site appears on a single external blocklist.
It has also been listed by PhishDestroy as blocked. The site is currently marked offline, and no additional content beyond the page title has been publicly disclosed. Defenders should continue to block the domain and its associated IP address, incorporate the domain into DNS filtering and URL reputation services, and monitor for any re‑registration attempts or variants that reuse similar naming patterns. Given the confirmed impersonation of Ledger and the crypto‑scam classification, heightened monitoring of related credential‑capture campaigns is recommended.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Охват данных13 recorded checks
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Криминалистическая аналитика
Технологии · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of ledgers-wallet.pages.dev · checked Apr 13, 2026
Доказательства и внешние отчетыIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.