eng-ledger-page[.]pages[.]dev
“Start Securing Your Crypto Assets with Ledger - Visit Ledger.com/start”
Зведення доказів
PhishDestroy identifies eng-ledger-page.pages.dev as an active crypto drainer campaign distributing malicious wallet-draining scripts under the guise of a financial ledger interface. This domain leverages Cloudflare Pages to host a deceptive portal designed to trick users into connecting wallets and approve fraudulent transactions, resulting in asset theft. The threat actor behind this campaign exploits low detection rates and reputable infrastructure to evade early discovery by security solutions. This domain exhibits multiple indicators consistent with a high-risk crypto drainer. VirusTotal analysis confirms 9/95 detections across major antivirus engines as of the latest scan, indicating it remains undetected by conventional security measures. The domain is registered through Cloudflare, Inc., and resolves to IP address 172.66.47.73, with a valid SSL certificate issued by Google Trust Services—factors that enhance its legitimacy in user and automated scanner perception. While the exact creation date is not provided in public data, the absence of detections and active hosting on a trusted CDN platform strongly suggest this campaign is currently operational and evolving rapidly. Users who have accessed this domain should immediately disconnect any connected wallets, revoke any unauthorized transaction approvals via blockchain explorers such as Etherscan or BscScan, and perform a full system scan using updated antivirus software. If crypto assets have been transferred or approved for malicious contracts, file an incident report with your wallet provider and local cybercrime units. Disable JavaScript in browser settings when accessing DeFi platforms as a precaution, and avoid clicking on unsolicited links or redirected pages claiming to offer financial tools. Block the domain and related IP at the firewall level to prevent future exposure. Always verify domain authenticity and use hardware wallets for high-value transactions to mitigate risk.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 12.08.2026
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of eng-ledger-page.pages.dev · checked Apr 6, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога