lbdchdbbv[.]d2onuj9nfjlz62[.]amplifyapp[.]com
“Ledger Live”
The domain is hosted on IP 18.164.124.67 and was registered through NOM-IQ Ltd dba Com Laude, registered over 7 years ago. The domain appears on 1 security blocklist.
This phishing site has been taken down and is no longer accessible. PhishDestroy's reports contributed to the removal of lbdchdbbv[.]d2onuj9nfjlz62[.]amplifyapp[.]com, which is now offline. However, similar threats may appear under new domains.
Threat Response Pipeline
Public Blocklist Status
Evidence Capture
Domain Intelligence
ns-1683.awsdns-18.co.uk
ns-169.awsdns-21.com
ns-904.awsdns-49.net
amplifyapp.com-admin@anonymised.email
amplifyapp.com-registrant@anonymised.email
abuse@comlaude.com
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If you have interacted with this domain, entered personal information, or connected a cryptocurrency wallet — take immediate action. Below are resources to help you report the incident and protect yourself.
Report to Your Local Authorities
Select your country to see local cybercrime reporting contacts and complaint templates.
Related Domain Reports
More Domains at NOM-IQ Ltd dba Com Laude
Other Ledger Impersonation Domains
These domains also target Ledger users. View all Ledger threats →
About This Report: lbdchdbbv.d2onuj9nfjlz62.amplifyapp.com
This domain security report for lbdchdbbv.d2onuj9nfjlz62.amplifyapp.com is maintained by PhishDestroy's automated threat intelligence pipeline. Our system continuously monitors this domain across 95 security vendors on VirusTotal, 1 public blocklists, URLScan.io, and Google Safe Browsing.
The site displays a page titled “Ledger Live”, which may be designed to impersonate Ledger.
lbdchdbbv.d2onuj9nfjlz62.amplifyapp.com has been flagged by 10 security vendors as of February 27, 2026.
If you believe this listing is inaccurate, you can submit an appeal. For more information about our methodology, visit our FAQ page.
Stay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive




URLScan Report