ledgifiur[.]gl
“Accounting Ledger”
Resumen de las pruebas
The domain ledgifiur.gl was registered on February 21, 2026 and is currently taken offline. DNS resolution points to IP address 172.67.220.174, which is hosted by Cloudflare (AS13335) in the United States. The site served an SSL certificate identified as WE1, indicating the use of a valid TLS layer despite the fraudulent purpose. The page title returned by the server is "Accounting Ledger," and the domain is explicitly listed as impersonating the Ledger brand, aligning with the reported crypto scam classification.
Threat intelligence shows the domain appears on a single security blocklist and is blocked by the PhishDestroy service. VirusTotal scans flagged the domain by four of ninety‑three security vendors, reflecting a modest detection rate, while Gridinsoft assigned a trust score of zero out of one hundred, indicating extreme suspicion. No additional evidence such as malware payloads or credential‑stealing forms has been disclosed.
The observed indicators suggest a short‑lived brand‑impersonation campaign that leveraged a legitimate‑looking TLS certificate and Cloudflare infrastructure to host a crypto‑related scam page. Defenders should continue to monitor the IP address 172.67.220.174 for any re‑use, ensure that URL filtering solutions block ledgifiur.gl, and update intrusion‑detection signatures to flag requests to the domain or its associated IP. Organizations using Ledger services should advise users to verify URLs carefully and to avoid interacting with any site presenting the "Accounting Ledger" title unless it is confirmed as an official Ledger endpoint.
Data Coverage
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 13/08/2026
10 fuentes externas supervisadas Sin coincidencias
Inteligencia forense
Análisis de VirusTotal
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.