ledgr-wallt-get[.]pages[.]dev
“Ledger Live Wallet — Secure Crypto Management”
The domain ledgr-wallt-get.pages.dev is under active analysis for brand impersonation targeting Ledger, a leading cryptocurrency hardware wallet provider. The threat actor leverages Cloudflare's Pages service to host a deceptive site mimicking Ledger's official branding, aiming to deceive users into divulging sensitive wallet credentials or payment information. This domain is currently flagged as active with an 'under_investigation' status, indicating ongoing scrutiny by security teams to determine the full scope of its malicious operations. PhishDestroy identifies this domain as a critical impersonation risk, with key technical indicators including zero detections out of 95 VirusTotal vendors as of the latest scan, a Google Trust Services SSL certificate securing the connection, and resolution to IP address 188.114.96.3. The domain is registered through Cloudflare, Inc., a common choice among threat actors for masking malicious infrastructure due to its legitimate and widely trusted services. While additional metadata such as creation date and blocklist counts remain unverified at this stage, the absence of detections highlights the need for heightened vigilance. Users are strongly advised to avoid interacting with this domain and any associated links or content. If encountered, report the domain to your organization's security team or directly to Ledger's official channels. Organizations should consider blocking the domain and IP address (188.114.96.3) at the network perimeter to prevent potential compromise. Proactively monitor for similar domains leveraging Cloudflare Pages or other reputable services to host impersonation content, as threat actors frequently rotate infrastructure to evade detection. Staying informed through threat intelligence feeds and exercising caution when prompted for sensitive information remain essential practices in mitigating brand impersonation risks.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | ledgr-wallt-get.pages.dev |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Перевірка за блок-листами
Джерел: 10 · синхронізовано 10.08.2026
Технології
Виявлено технологій із високою впевненістю: 3
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of ledgr-wallt-get.pages.dev · checked May 4, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога