explore-ledgr-en[.]pages[.]dev
explore-ledgr-en.pages.dev için kimlik avı ve güvenlik kontrolü
“Official Site® | Ledger.com/Start®”
explore-ledgr-en.pages.dev — Bilinen son aktif (HTTP 200). Marka kimliğine bürünme: Ledger; Dolandırıcılık türü: Brand Impersonation. Kanıt özeti: VirusTotal 11/91 (alphaMountain.ai, BitDefender, ESET, Fortinet, G-Data); URLScan malicious verdict; PhishDestroy score 98/100. Kayıt kuruluşu: Cloudflare.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
PhishDestroy identifies explore-ledgr-en.pages.dev as a credential-harvesting landing page currently impersonating a popular cryptocurrency wallet service. The site is hosted on Cloudflare Pages and resolves to IP 188.114.96.3, where it serves a spoofed login form designed to trick users into surrendering their recovery phrases or private keys. Security telemetry shows zero detections on VirusTotal across 95 engines, and the domain is still absent from major blocklists, indicating it remains under active investigation.
Technical indicators align with a classic phishing campaign: registration through Cloudflare, Inc., an active SSL certificate issued by Google Trust Services, and a fresh infrastructure footprint pointing to recent deployment. The absence of detection signals poses a heightened risk to crypto holders who may mistake the page for an official Ledger support domain. Attack infrastructure follows a low-profile strategy, leveraging a Pages.dev subdomain to evade legacy filtering while providing the attacker with rapid deployment and evasion capabilities.
If you visited explore-ledgr-en.pages.dev—especially if you entered any wallet recovery phrases or credentials—assume compromise immediately. Disconnect any affected devices from the internet, revoke exposed keys in a separate, clean environment, and transfer remaining assets to a newly generated wallet. Report the incident to the real Ledger support channel and consider scanning your system with reputable anti-malware tools. Monitor blockchain addresses linked to the exposed keys for any unauthorized transactions.
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org %100 güvenCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of explore-ledgr-en.pages.dev · checked Apr 30, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin