Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@tencent.com.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
ledger-allocation[.]com
“ledger-allocation.com”
ledger-allocation.com — Terakhir diketahui aktif (HTTP 200). Peniruan identitas merek: Ledger; Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 17/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); URLQuery 1 alert; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. Registrar: DYNADOT.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
PhishDestroy identifies ledger-allocation.com as a recently active crypto drainer domain under investigation for malicious activities targeting cryptocurrency holders. The domain exhibits classic drainer behaviors, including deceptive naming conventions and infrastructure designed to siphon assets from unsuspecting victims. Given its active status and lack of detection, immediate defensive measures are warranted to prevent potential financial losses. This domain was flagged with a risk level of under_investigation due to its specific association with crypto drainer operations. Technical analysis reveals it currently resolves to IP address 43.129.199.207, registered through DYNADOT LLC on April 27, 2026. VirusTotal scanning shows 0 detections out of 95 engines, indicating it remains undetected by mainstream security tools. No known blocklist entries or trust score degradation has been recorded at this time, suggesting a newly deployed threat. The domain's recent creation date and clean reputation metrics further highlight its potentially evasive nature. Mitigation against this crypto drainer requires immediate action. Organizations and individuals should block ledger-allocation.com at the network and DNS levels to prevent endpoint exposure. Users in possession of cryptocurrency wallets should avoid interacting with this domain entirely, including any subpages or linked assets. Security teams are advised to inspect network traffic for connections to 43.129.199.207 and update firewall rules accordingly. Additionally, monitor for any wallet addresses associated with this campaign, as drainers often route stolen funds through obfuscated or newly generated addresses. Proactive threat hunting based on this IOC set will help prevent successful asset exfiltration.
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | ledger-allocation.com |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisis VirusTotal
Analisis Konfigurasi Situs
Bukti & Laporan Eksternal
PD-20260429-567295 Recipient: abuse@tencent.com Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive