walet-ledgr-os[.]pages[.]dev
“Ledger Wallet – Getting Started | Developer Portal”
Зведення доказів
Analysis of walet-ledgr-os.pages.dev shows an active infrastructure used to impersonate the Ledger brand. The domain was registered on April 27, 2026 through Cloudflare, Inc. and is served from the Cloudflare network (IP 172.66.45.43, located in Canada). DNS resolution uses Cloudflare nameservers bruce.ns.cloudflare.com and cortney.ns.cloudflare.com. The site enforces HSTS, supports HTTP/3, and presents a Google Trust Services / WE1 SSL certificate, indicating a legitimate‑looking TLS layer. The HTTP response returns status code 200 and the page title observed is "Ledger Wallet – Getting Started | Developer Portal," directly referencing Ledger and confirming the brand‑impersonation intent. Security telemetry flags the domain as high‑risk: it appears on one blocklist, is blocked by PhishDestroy, and 11 of 91 VirusTotal scanners have flagged it. The Gridinsoft trust score of 0/100 further underscores malicious confidence. While the exact content of the page has not been examined, the combination of recent registration, targeted page title, and multiple detections points to a credential‑harvesting campaign aimed at Ledger users. Defenders should immediately block the domain at network perimeters, add it to URL filtering and email security policies, and monitor for similar sub‑domains using the same Cloudflare nameserver pattern. Ongoing threat‑intel feeds should be consulted for any emerging indicators related to Ledger impersonation, and incident response teams should be prepared to handle potential credential exposure reports from affected users.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Технології
Виявлено 3 технології з високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of walet-ledgr-os.pages.dev · checked Apr 27, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога