techhelp[.]ghost[.]io
Domain Security & Threat Intelligence Report
Analyst Security Overview
AI-GeneratedThe domain techhelp.ghost.io operates as a phishing site impersonating Ledger, a well-known cryptocurrency hardware wallet provider. It aims to deceive users by mimicking the official Ledger website. The domain has a VirusTotal score of 3/95, indicating that it has been flagged as potentially dangerous by several security vendors.
Registered with 1API GmbH, techhelp.ghost.io has an age of over 14 years, which could lend it an air of legitimacy despite its malicious intent. It utilizes the IP address 151.101.3.7 and is currently alive, with one blocklist entry. This long-standing registration may allow it to evade detection, while the single blocklist indication highlights its suspicious nature.
PhishDestroy is actively monitoring techhelp.ghost.io and has reported it to relevant authorities to mitigate further risks. The site remains active, and users are urged to be vigilant against potential phishing attempts related to Ledger services.
Threat Response Pipeline
Public Blocklist Status
Website Screenshot
Domain Intelligence
woz.ns.cloudflare.com
abuse@fastly.com
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If you have interacted with this domain, entered personal information, or connected a cryptocurrency wallet — take immediate action. Below are resources to help you report the incident and protect yourself.
Report to Your Local Authorities
Select your country to see local cybercrime reporting contacts and complaint templates.
Related Domain Reports
Other Domains on 151.101.3.7
More Domains at 1API GmbH
Stay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive
URLScan Report