l--start-ledger-oauth[.]webflow[.]io
Domain Security & Threat Intelligence Report
Analyst Security Overview
AI-GeneratedThe domain l--start-ledger-oauth.webflow.io impersonates the legitimate Ledger platform, which is known for cryptocurrency hardware wallets. This phishing site has a VirusTotal detection score of 19 out of 95, indicating a significant presence of malicious activity. Such domains aim to deceive users into providing sensitive information, such as login credentials or recovery phrases, thereby compromising their assets.
Registered with MarkMonitor, Inc., this domain has been active for 4675 days, exhibiting a prolonged lifespan often associated with persistent phishing threats. The IP address 104.18.36.248 shows signs of shared hosting, and the domain is blocklisted in two security databases, reflecting its malicious intent. The presence of multiple detections on VirusTotal further highlights its dubious nature.
Currently, the domain is still active. PhishDestroy has reported it and is actively monitoring to mitigate any potential risks associated with this phishing attempt targeting Ledger users.
Threat Response Pipeline
Public Blocklist Status
Website Screenshot
Domain Intelligence
lamar.ns.cloudflare.com
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If you have interacted with this domain, entered personal information, or connected a cryptocurrency wallet — take immediate action. Below are resources to help you report the incident and protect yourself.
Report to Your Local Authorities
Select your country to see local cybercrime reporting contacts and complaint templates.
Related Domain Reports
Other Domains on 104.18.36.248
More Domains at MarkMonitor, Inc.
Stay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive
URLScan Report