liveweb[.]ghost[.]io
“Ledger® Live | DownLoad and Install Ledger® Wallet™ App”
साक्ष्य सारांश
The domain liveweb.ghost.io is currently active and has been classified as a high‑risk brand‑impersonation campaign targeting Ledger. DNS resolution points to the IP address 151.101.67.7, which belongs to the Fastly network in the United States (AS54113). The site serves an HTTP 301 redirect and presents a TLS certificate issued by Let’s Encrypt (R12). Service fingerprints indicate the presence of Varnish, Nginx, and OpenResty, while the authoritative name servers are woz.ns.cloudflare.com and sara.ns.cloudflare.com, suggesting the use of Cloudflare DNS services. Registration data shows the domain was created on 1 October 2011 and was registered through 1API GmbH. Reputation signals are poor: the domain appears on one security blocklist, has been blocked by PhishDestroy, and receives a Gridinsoft trust score of 0 out of 100. VirusTotal analysis registers five detections out of ninety‑five scanners. The page title advertised at the domain, "Ledger® Live | DownLoad and Install Ledger® Wallet™ App," aligns with the declared brand target and indicates a cryptocurrency‑related lure. No additional content has been observed, so the precise phishing mechanics remain unknown. Defenders should treat liveweb.ghost.io as malicious, block network traffic to the domain and its resolved IP, add the domain to local deny lists, and monitor related Fastly and Cloudflare infrastructure for future variations. Continuous scanning of the host and any associated subdomains is recommended to detect potential re‑use of the same infrastructure.
Data Coverage
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of liveweb.ghost.io · checked Mar 2, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।