help-liveledger-login-wallet-extens-zeta[.]vercel[.]app
“Ledger® Hardware Wallet | Secure Your Crypto Assets”
help-liveledger-login-wallet-extens-zeta.vercel.app — Masqué · accessible. Usurpation de l'identité de la marque : Ledger; Type d'arnaque : Credential Phishing. Résumé des preuves: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); cloaking observed; PhishDestroy score 100/100. Bureau d’enregistrement: Vercel.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain help-liveledger-login-wallet-extens-zeta.vercel.app is currently active and poses a high-risk brand impersonation threat targeting Ledger. The domain impersonates the official Ledger website, potentially misleading users into believing they are interacting with a legitimate service. This could lead to unauthorized access to user credentials and compromise of cryptocurrency assets.
Infrastructure analysis reveals that the domain resolves to the IP address 216.198.79.67, located in the United States and registered to CYPRESS COMMUNICATIONS, LLC. The domain was created on May 08, 2026, and is registered through Vercel. It is secured with an SSL certificate issued by Google Trust Services / WR1. Notably, the domain has been flagged by 19 out of 95 security vendors on VirusTotal, indicating a significant level of suspicion. Additionally, the domain appears on one security blocklist, specifically PhishDestroy, further corroborating its malicious intent.
Given the current active status of the domain, it is crucial that users are aware of the potential risks associated with visiting this site. Security teams are advised to monitor the domain for any signs of user interaction or data exfiltration. Users should be educated to verify the URL and SSL certificate of any Ledger-related website before entering sensitive information. It is also recommended to report the domain to the relevant authorities and to Ledger's security team for further investigation and potential takedown.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif