official-ledger[.]live
Domain Security & Threat Intelligence Report
Analyst Security Overview
AI-GeneratedThe domain official-ledger.live was identified as a fraudulent site impersonating Ledger, a well-known cryptocurrency hardware wallet provider. With a detection score of 15 out of 95 on VirusTotal, this domain posed a significant risk to users attempting to access what they believed to be legitimate Ledger services. Phishing attempts often exploit user trust, and this domain's malicious intent was clear.
This domain had a notable presence in the phishing ecosystem, with 4 blocklist entries highlighting its nefarious activities. The IP address associated with official-ledger.live is 198.18.0.135, which is typically used in shared hosting environments, adding to its anonymity. The absence of a registered registrar further complicates the tracing of ownership, aligning with common tactics used by cybercriminals.
As of now, the domain has been taken down, and PhishDestroy has reported its activities to relevant authorities. Continuous monitoring is in place to ensure that any resurgence of similar domains is promptly addressed, protecting potential victims from falling prey to these fraudulent schemes.
Threat Response Pipeline
Public Blocklist Status
Website Screenshot
Domain Intelligence
seamus.ns.cloudflare.com
postmaster@official-ledger.live
contact@official-ledger.live
admin@official-ledger.live
info@official-ledger.live
webmaster@official-ledger.live
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If you have interacted with this domain, entered personal information, or connected a cryptocurrency wallet — take immediate action. Below are resources to help you report the incident and protect yourself.
Report to Your Local Authorities
Select your country to see local cybercrime reporting contacts and complaint templates.
Related Domain Reports
Other Domains on 198.18.0.135
More Domains at N/A
Stay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive
URLScan Report