ledger-eo-starts[.]pages[.]dev
“Official Ledger® Onboarding™ | Setup Hub”
证据摘要
ledger-eo-starts.pages.dev has been flagged by PhishDestroy with a risk level of under_investigation, indicating an active crypto-wallet drainer designed to mimic Ledger’s onboarding process. The domain presents itself as ‘Official Ledger® Onboarding™ | Setup Hub,’ tricking users into entering wallet recovery phrases or private keys under the guise of an official Ledger setup portal. Unlike generic phishing pages, this site specifically targets crypto holders by abusing Ledger’s brand trust to steal funds directly from wallets. This domain was flagged by PhishDestroy and remains unblocked by VirusTotal and most threat-intelligence platforms, showing 0 detections out of 95 scans as of the latest check. It is registered through Cloudflare, Inc. and resolves to IP 172.66.47.43 using a Google Trust Services SSL certificate, which may help it evade initial browser warnings. There is no public record of creation date or blocklist inclusion, and the site is currently still active and accessible. The combination of a trusted certificate authority, Cloudflare hosting, and zero detections highlights a sophisticated, low-profile threat that prioritizes stealth over volume to harvest seed phrases and drain wallets undetected. Users should not visit or interact with ledger-eo-starts.pages.dev under any circumstances. To verify any Ledger-related setup page, always navigate directly to ledger.com and use their official support portal. Enable hardware wallet verification, never enter recovery phrases on websites, and monitor wallet transactions in real time. If exposure occurs, revoke connected permissions, transfer remaining funds to a new wallet, and report the incident to both Ledger and PhishDestroy for takedown and remediation.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of ledger-eo-starts.pages.dev · checked Apr 19, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控