Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
ledger-partner-hub[.]com
“Ledger官网入口|Ledger硬件钱包购买咨询下载售后与正品验证|沣泽懿”
Ringkasan bukti
The domain ledger-partner-hub.com is currently active and serves as a brand‑impersonation vector targeting Ledger. The site presents the page title “Ledger官网入口|Ledger硬件钱包购买咨询下载售后与正品验证|沣泽懿”, which directly references Ledger’s official services, indicating a deliberate attempt to mislead users seeking legitimate Ledger hardware wallet resources. Infrastructure analysis shows the domain was registered with Dynadot Inc on 27 April 2026 and resolves to IP 43.154.193.155, an address located in Hong Kong and associated with AS132203 (Tencent Building, Kejizhongyi Avenue). The host runs Nginx with HTTP Strict Transport Security enabled and presents a Let’s Encrypt R13 certificate, a common choice for malicious actors seeking short‑term HTTPS coverage. Reputation signals are poor: Gridinsoft assigns a trust score of 0 / 100, AlienVault OTX lists the domain in two threat‑intelligence pulses, and VirusTotal records 15 detections out of 91 scanners. The domain is already blocked by PhishDestroy and appears on one external blocklist, yet it continues to return HTTP 200 responses. Nameservers ns1.dyna-ns.net and ns2.dyna-ns.net are typical of Dynadot‑hosted domains and provide no additional mitigation clues. While the exact payload or credential‑harvesting mechanisms have not been publicly observed, the combination of a Ledger‑specific page title, low trust scores, multiple security vendor flags, and active hosting suggests a high‑risk impersonation campaign. Defenders should add ledger-partner-hub.com to URL filtering and DNS block lists, monitor outbound traffic for connections to 43.154.193.155, and educate users that any Ledger‑related services should be accessed only through official Ledger domains. Continuous re‑evaluation is advised, as the threat actor may adjust content or infrastructure to evade detection.
Snapshot bukti yang dikirim
- Dikirim
- Catatan buku besar
- 1
- ID kasus
PD-20260610-CC5C4E- Judul halaman yang direkam
- Ledger官网入口|Ledger硬件钱包购买咨询下载售后与正品验证|沣泽懿
- Artefak PDF
- Bukti PDF
Teks bukti lengkap
Policy Violations: Acceptable Use forbids illegal content; Spam & Abuse Policy prohibits phishing, fraud, malware; Dynadot may disable DNS and suspend domains
Applicable Laws: CFAA 18 U.S.C. §1030, Wire Fraud 18 U.S.C. §1343, CAN-SPAM Act
Data Coverage
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | ledger-partner-hub.com |
malicious | Sinkholed |
| DNS4EU | ledger-partner-hub.com |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Cakupan daftar blokir
10 sumber eksternal dipantau · snapshot tersimpan 13/08/2026
Tangkapan tersimpan
Intelijen Domain
Detail teknisDNS, nama TLS, dan stempel waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknologi
2 teknologi dengan keyakinan tinggi teridentifikasi
Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of ledger-partner-hub.com · checked Jun 26, 2026
Analisis Konfigurasi Situs
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive