ledger-cey[.]pages[.]dev
“Ledger”
证据摘要
This domain is flagged as a high-risk brand impersonation threat targeting Ledger hardware wallet users. Analysis indicates the infrastructure is designed to harvest cryptocurrency credentials through deceptive wallet interfaces, a tactic commonly associated with cryptocurrency theft operations. Infrastructure analysis reveals the domain ledger-cey.pages.dev was registered through Cloudflare Pages on May 08, 2026, with an SSL certificate issued by Let's Encrypt (serial number E7). The domain resolves to IP address 172.66.47.153, located in Canada and operated by Cloudflare, Inc. Detection metrics show 1 of 95 security vendors on VirusTotal flag this domain as malicious, while three independent security blocklists (PhishDestroy, MetaMask, and SEAL) have actively blocked it. The page title explicitly displays 'Ledger,' confirming the brand impersonation attempt. Mitigation requires immediate action from both end users and infrastructure providers. Users should verify domain authenticity by cross-referencing official Ledger communication channels before entering credentials. Network administrators should implement DNS-based blocking for 172.66.47.153 and monitor for connections to ledger-cey.pages.dev. Cryptocurrency operators should integrate the domain into transaction verification systems to prevent wallet interactions. Given the domain's active status and Cloudflare hosting, takedown requests should be directed to the registrar with accompanying evidence from the three blocklists and VirusTotal detection.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
域名情报
技术详情DNS、TLS 名称和时间戳
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控