w-auth-ledgerr-hlp[.]webflow[.]io
“Powering Up Your Device** | Ledger.com/Start®”
w-auth-ledgerr-hlp.webflow.io — Контент недоступний. Уособлення бренду: Ledger; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 21/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLScan malicious verdict; PhishDestroy score 100/100. Реєстратор: Webflow.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain w-auth-ledgerr-hlp.webflow.io is a brand impersonation phishing site specifically targeting Ledger, a popular cryptocurrency hardware wallet company. It was designed to trick users into believing they are on an official Ledger support or setup page, thereby stealing sensitive information such as recovery phrases or login credentials. As of the latest check, this domain has been taken offline, but the threat it posed underscores the ongoing risks of credential harvesting in the crypto space.
This phishing domain was created on April 9, 2026, and registered through Webflow, a legitimate web hosting service often abused by phishers. VirusTotal flagged it with 21 out of 95 security vendors marking it malicious, and it appeared on one security blocklist. The domain resolved to IP address 172.64.151.8 and used an SSL certificate from Google Trust Services (WE1), which gave it a false sense of legitimacy. The page title was "Powering Up Your Device** | Ledger.com/Start®," closely mimicking the real Ledger start page.
Now that the site is offline, the immediate risk is reduced, but users should remain vigilant. Anyone who visited this domain and entered personal information, especially Ledger recovery phrases or passwords, should immediately transfer funds to a new wallet and change all associated credentials. Always verify URLs before interacting with any crypto-related service, and bookmark official sites like ledger.com to avoid typosquatting. Using a hardware wallet and enabling two-factor authentication adds extra layers of security against such impersonations.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Криміналістичні дані
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of w-auth-ledgerr-hlp.webflow.io · checked Apr 9, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога