MALICIOUS — CRITICAL
Перевірка домену com-us-ledgr-strt.pages.dev на фішинг і безпеку
com-us-ledgr-strt[.]
This domain is flagged as a high-risk brand impersonation threat specifically targeting Ledger, a hardware cryptocurrency wallet provider.
- VirusTotal
- 3/91
- Blocklists
- No stored match
- Доступність
- Останній відомий активний · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
com-us-ledgr-strt.pages.dev — Останній відомий активний (HTTP 200). Уособлення бренду: Ledger; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 3/91 (alphaMountain.ai, Fortinet, LevelBlue); PhishDestroy score 76/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
This domain is flagged as a high-risk brand impersonation threat specifically targeting Ledger, a hardware cryptocurrency wallet provider. The infrastructure presents itself as a legitimate setup guide with the page title 'Ledger Start — Secure Setup Guide for New Users,' attempting to deceive users into interacting with malicious content under the guise of secure onboarding procedures. Analysis indicates the domain com-us-ledgr-strt.pages.dev was registered through Cloudflare, Inc. on April 30, 2026, and currently resolves to the IP address 172.66.47.170, located in California. VirusTotal detection shows 1 out of 95 security vendors flagging this domain as malicious. The domain appears on one security blocklist and is currently blocked by PhishDestroy. The SSL certificate is issued by Google Trust Services with the identifier WE1, which is consistent with Cloudflare-hosted infrastructure. Mitigation steps for this specific threat type include immediate blacklisting of the domain and IP address across all network security controls. Organizations should implement DNS filtering to prevent resolution of com-us-ledgr-strt.pages.dev and monitor for any connections to 172.66.47.170. End users should be educated to verify domain authenticity before entering any credentials or sensitive information, particularly during cryptocurrency wallet setup processes. Security teams should examine SSL certificate fingerprints and monitor for similar patterns in newly registered domains that combine brand names with generic setup-related terms.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Обсяг даних12 recorded checks
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 4 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіGoogle Analytics is a free web analytics service that tracks and reports website traffic.
google.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of com-us-ledgr-strt.pages.dev · checked Apr 30, 2026
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.