strt-ledgr-nav[.]pages[.]dev
“Ledger.com/start — Get Started with Your Ledger Device”
PhishDestroy identifies strt-ledgr-nav.pages.dev as an active crypto drainer phishing domain designed to trick users into connecting cryptocurrency wallets under the guise of a legitimate service. Once connected, the site silently drains tokens by exploiting wallet approval mechanisms, often leading to irreversible financial losses. This domain employs deceptive tactics such as mimicking legitimate ledger navigation interfaces to establish false credibility and exploit user trust. The threat is elevated due to its current active status and the presence of multiple security vendor alerts, indicating a high potential for successful exploitation.
This domain was flagged by 13 out of 95 VirusTotal security vendors, with a detection ratio of 13.68%, and resolves to IP address 188.114.96.3. Registered through Cloudflare, Inc., the domain utilizes Google Trust Services for its SSL certificate, which may give users a false sense of security. The seed identifier for this threat is 2fbbf2, confirming its classification as a generic phishing campaign targeting cryptocurrency users. The low detection rate on VirusTotal suggests the domain may be relatively new or employs sophisticated evasion techniques to bypass initial scrutiny.
If you visited strt-ledgr-nav.pages.dev, immediately disconnect your wallet and revoke any suspicious approvals through your wallet’s interface or tools like revoke.cash. Do not enter any personal or financial information. Report the domain to Google Safe Browsing and your antivirus provider. Consider using hardware wallets for crypto transactions to mitigate risks, and always verify URLs through official channels before interacting. Stay vigilant against similar crypto drainer domains that exploit trust in well-known brands or services.
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
10 个来源 · 同步于 2026年8月10日
技术
识别出 4 项高置信度技术
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of strt-ledgr-nav.pages.dev · checked Apr 29, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控