us-ledgr-com-start[.]pages[.]dev
us-ledgr-com-start.pages.dev 网络钓鱼与安全检查
“How to set up your Ledger hardware wallet | Ledger”
us-ledgr-com-start.pages.dev — 可达 · 访问受限 (HTTP 403). 品牌冒充:Ledger; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 0/94; PhishDestroy score 45/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain presents itself as a legitimate Ledger hardware wallet setup page, titled 'How to set up your Ledger hardware wallet | Ledger,' but is designed to steal cryptocurrency wallet credentials. The site mimics Ledger’s official branding and user interface, tricking victims into entering sensitive recovery phrases or private keys. Such credentials, once captured, allow attackers to drain associated wallets without authorization. The threat is particularly insidious because it exploits trust in a well-known brand, targeting users who may be unfamiliar with hardware wallet security procedures. Analysis indicates the domain was created on October 25, 2025, and is registered through Cloudflare, Inc. It resolves to the IP address 188.114.96.3 and uses a Google Trust Services SSL certificate to appear legitimate. Security vendors on VirusTotal flagged the domain, with 12 out of 95 detecting malicious activity. The site was also listed on one security blocklist and assigned a trust score of 0/100 by Gridinsoft. Technologies detected on the infrastructure include WordPress, Contentful, MySQL, PHP, Yoast SEO, Optimizely, OneTrust, and jQuery Migrate, which are not typically associated with Ledger’s official web properties. If you visited us-ledgr-com-start.pages.dev or entered any sensitive information, take immediate action to secure your assets. Disconnect any connected hardware wallets and cease all interactions with the domain. Generate a new recovery phrase for your Ledger device and transfer funds to a new wallet address. Monitor your wallet transactions for unauthorized activity and report the incident to your local cybercrime unit or relevant financial authorities. Avoid clicking on links from unsolicited emails or messages claiming to be from Ledger, and always verify the domain name before entering credentials.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 13 identified
WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.
wordpress.org 置信度 100%Contentful is an API-first content management platform to create, manage and publish content on any digital channel.
www.contentful.com 置信度 100%Yoast SEO is a search engine optimisation plugin for WordPress and other platforms.
yoast.com 置信度 100%Optimizely is an experimentation platform that helps developers build and run A/B tests on websites.
www.optimizely.com 置信度 100%Query Migrate is a javascript library that allows you to preserve the compatibility of your jQuery code developed for versions of jQuery older than 1.9.
github.com 置信度 100%jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 置信度 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%Google Tag Manager is a tag management system (TMS) that allows you to quickly and easily update measurement codes and related code fragments collectively known as tags on your website or mobile app.
www.google.com 置信度 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of us-ledgr-com-start.pages.dev · checked Jun 26, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。