MALICIOUS — CRITICAL
eng-us-ledger.pages.dev için kimlik avı ve güvenlik kontrolü
eng-us-ledger[.]
The domain eng-us-ledger.pages.dev was registered on April 29, 2026 and is currently active.
- VirusTotal
- 13/91
- Blocklists
- No stored match
- Kullanılabilirlik
- Bilinen son aktif · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
eng-us-ledger.pages.dev — Bilinen son aktif (HTTP 200). Marka kimliğine bürünme: Ledger; Dolandırıcılık türü: Brand Impersonation. Kanıt özeti: VirusTotal 13/91 (alphaMountain.ai, BitDefender, ESET, Emsisoft, Fortinet); PhishDestroy score 100/100. Kayıt kuruluşu: Cloudflare.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Evidence Analysis
The domain eng-us-ledger.pages.dev was registered on April 29, 2026 and is currently active. It resolves to the Cloudflare edge address 188.114.97.3, which is associated with Cloudflare, Inc. in CA. The site serves content over HTTPS with a Google Trust Services / WE1 certificate and enforces HSTS while supporting HTTP/3. The page title presented by the site is "Ledger Live Download - Secure Crypto Management," indicating a direct brand impersonation of Ledger. Intelligence classifies the malicious activity as brand impersonation and lists the threat as high risk. VirusTotal analysis shows that 3 of 91 security vendors have flagged the domain, and Gridinsoft assigns a trust score of 0 out of 100. The domain appears on one known security blocklist and has been blocked by PhishDestroy. Infrastructure details reveal Cloudflare‑provided nameservers (kinsley.ns.cloudflare.com, yoxall.ns.cloudflare.com) and the use of Cloudflare’s CDN services. Defenders should add eng-us-ledger.pages.dev to blocklists, monitor DNS queries for the resolved IP, and enforce web‑filtering rules that prevent access to any URLs containing the observed page title or brand name. Users should be warned that any request to download Ledger Live from this domain is unauthorized and may lead to credential theft or malware distribution. Continuous re‑assessment is recommended, as the domain remains active and could evolve its payload or hosting configuration.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Veri kapsamı12 recorded checks
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org %100 güvenCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of eng-us-ledger.pages.dev · checked Apr 29, 2026
Kanıtlar ve Dış RaporlarIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.