ledgeronlinechecks[.]com
“Ledger Live : Most Secure Crypto Wallet App | Ledger”
Résumé des preuves
The domain ledgeronlinechecks.com is identified as a brand impersonation threat targeting the cryptocurrency wallet brand Ledger. This website masquerades as the legitimate Ledger Live application, which is known for its secure management of digital assets. The impersonation can lead to users unknowingly divulging sensitive information, such as login credentials or private keys, to malicious actors, thereby compromising their digital wallets and potentially resulting in financial loss.
Analysis indicates that the domain is flagged by 11 out of 95 security vendors on VirusTotal, suggesting a moderate level of suspicion among the security community. The domain was registered through Porkbun LLC on September 10, 2025, and currently resolves to the IP address 52.38.173.188, located in the United States under the Amazon.com, Inc. network (AS16509). Despite its deceptive appearance, the domain does not have an SSL certificate, which is a common indicator of a legitimate website. Additionally, the domain appears on one security blocklist and has been taken offline by PhishDestroy, further validating its malicious nature.
Users who have visited ledgeronlinechecks.com should immediately check their Ledger account for any unauthorized activity. If any suspicious transactions or changes are detected, users should contact Ledger support immediately to secure their accounts. It is also recommended that users update their passwords and enable multi-factor authentication on all related accounts to prevent further unauthorized access. Conducting a thorough scan of their devices for malware and reviewing their browser history for any other potentially harmful sites is advisable to ensure their overall security.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 11/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse forensique
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif