ledger[.]gd
Domain Security & Threat Intelligence Report
Analyst Security Overview
AI-GeneratedThe domain ledger.gd was identified as a phishing site impersonating Ledger, a well-known cryptocurrency hardware wallet provider. The domain has a VirusTotal detection score of 15 out of 95, indicating significant malicious activity. PhishDestroy's analysis confirms that this domain aimed to deceive users into providing sensitive information related to Ledger products.
Registered with NICENIC INTERNATIONAL GROUP CO., LIMITED, the domain is relatively young, having been created 110 days ago. It has garnered attention due to its presence on multiple blocklists, raising concerns about its malicious intent. The IP address 198.18.1.227 is associated with shared hosting, which is commonly used by phishing actors to launch such attacks.
The domain is currently dead, having been taken down by PhishDestroy. Our team reported the domain and ensured it was blocklisted to prevent further malicious activities. Continuous monitoring is in place to track any potential re-emergence of this phishing threat.
Threat Response Pipeline
Public Blocklist Status
Website Screenshot
Domain Intelligence
ns2.ddos-guard.net
support@ddos-guard.net
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If you have interacted with this domain, entered personal information, or connected a cryptocurrency wallet — take immediate action. Below are resources to help you report the incident and protect yourself.
Report to Your Local Authorities
Select your country to see local cybercrime reporting contacts and complaint templates.
Related Domain Reports
Other Domains on 198.18.1.227
More Domains at NICENIC INTERNATIONAL GROUP CO., LIMITED
Stay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive
URLScan Report