Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@spectraip.nl.
The latest stored availability evidence still shows the domain reachable; 12 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
web3ledger[.]io
Analyse phishing et sécurité de web3ledger.io
“Web3 - Enterprise Web3 Solutions”
web3ledger.io — Erreur de serveur (HTTP 502). Usurpation de l'identité de la marque : Ledger; Type d'arnaque : Crypto Drainer. Résumé des preuves: VirusTotal 5/91 (alphaMountain.ai, CRDF, Fortinet, Gridinsoft, SOCRadar); Spamhaus DBL_PHISH; PhishDestroy score 81/100. Bureau d’enregistrement: TLD Registrar Solutions.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
Analysis of the domain web3ledger.io indicates active involvement in a high‑risk crypto‑drainer campaign. The domain was registered on August 24, 2025 through TLD Registrar Solutions Ltd. and continues to resolve to the IP address 5.182.208.206. DNS resolution is provided by ns1.zencorehost.com and ns2.zencorehost.com. The infrastructure has been flagged by PhishDestroy and appears on a single security blocklist, confirming that defensive feeds are already aware of its malicious purpose.
VirusTotal data shows that one out of ninety‑one scanning engines currently flags the domain, suggesting that at least one vendor has detected malicious activity associated with the host. No additional public safety‑browser or OTX entries are referenced in the available intelligence, leaving the broader detection surface unclear. The domain’s age—less than one year—combined with its active status and presence on a blocklist points to a recent deployment designed to target cryptocurrency users. Uncertainty remains regarding the specific phishing pages, payload delivery mechanisms, and any secondary infrastructure, as no page‑title, SSL fingerprint, or HTTP response details have been disclosed.
Defenders should prioritize blocking traffic to 5.182.208.206 and the domain web3ledger.io at the network perimeter, update intrusion‑detection signatures to include the observed nameserver pattern, and monitor for any new detections from additional security vendors. Continuous reconnaissance of the hosting provider and registrar may reveal further related domains, supporting broader takedown efforts. Given the high risk classification, organizations handling cryptocurrency assets should treat any communications referencing web3ledger.io as malicious and enforce strict verification procedures for wallet interactions.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Technologies · 6 identified
Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com Confiance à 100 %Smartsupp is a live chat tool that offers visitor recording feature.
www.smartsupp.com Confiance à 100 %JSDelivr is a free public CDN for open-source projects. It can serve web files directly from the npm registry and GitHub repositories without any configuration.
www.jsdelivr.com Confiance à 100 %HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confiance à 100 %Analyse VirusTotal
Preuves archivées
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of web3ledger.io · checked Jul 27, 2026
Données factuelles et rapports externes
PD-20260727-7F9B93 Recipient: abuse@spectraip.nl Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif