help-start-ledgr[.]pages[.]dev
Перевірка домену help-start-ledgr.pages.dev на фішинг і безпеку
“Ledger — Get Started with Ledger Live”
help-start-ledgr.pages.dev — Доступно · доступ обмежено (HTTP 403). Уособлення бренду: Ledger; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 2/94 (Fortinet, LevelBlue); PhishDestroy score 61/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain is flagged as an elevated-risk brand impersonation threat targeting Ledger hardware wallet users. The site presents itself as a legitimate Ledger Live setup portal, designed to harvest recovery phrases, private keys, or login credentials from unsuspecting victims attempting to initialize their devices. Analysis indicates the domain specifically mimics the onboarding flow for Ledger’s official software, increasing the likelihood of successful deception among new users unfamiliar with legitimate processes. Infrastructure analysis reveals the domain help-start-ledgr.pages.dev was registered on March 26, 2026, through Cloudflare, Inc., and resolves to the IP address 172.66.44.91. The site employs Cloudflare hosting and Google Trust Services SSL certificates, while implementing HSTS and HTTP/3 protocols to appear technically legitimate. Detection metrics show 13 out of 95 security vendors on VirusTotal have flagged the domain, and it appears on one security blocklist. The Gridinsoft trust score for this domain is 0/100, further confirming its malicious classification. The page title, 'Ledger — Get Started with Ledger Live,' directly mirrors official branding, enhancing its deceptive capabilities. Mitigation against this brand impersonation threat requires multi-layered technical controls. Organizations should block the domain and its resolving IP (172.66.44.91) at the network perimeter using firewalls or DNS filtering. Endpoint protection systems should be updated to recognize the domain’s indicators of compromise, including its SSL certificate issuer (Google Trust Services) and hosting provider (Cloudflare). Users should be educated to verify domain authenticity by cross-referencing URLs with Ledger’s official documentation and accessing setup guides exclusively through the company’s verified channels. Recovery phrases and private keys must never be entered on third-party sites, regardless of apparent legitimacy. Monitoring for similar Cloudflare Pages domains with 'ledger' or 'live' in the subdomain structure is recommended to detect emerging copycat threats.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Криміналістичні дані
Технології · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of help-start-ledgr.pages.dev · checked Jun 26, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога