Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
pay[.]legacy-ledgerco[.]com
“Online payment @ Legacy Ledger Co”
Riepilogo delle prove
PhishDestroy identifies pay.legacy-ledgerco.com as an elevated-risk brand impersonation domain specifically designed to mimic Ledger, a well-known cryptocurrency hardware wallet company. The threat type is brand impersonation, where attackers create a fraudulent payment page to deceive users into revealing sensitive information or sending funds.
This domain was registered through GoDaddy.com, LLC on July 23, 2025, and resolves to IP address 100.49.110.141. VirusTotal analysis shows 3 out of 95 security vendors flagging it as malicious, and it appears on 1 security blocklist. The SSL certificate is issued by GoDaddy.com, Inc. / Go Daddy Secure Certificate Authority - G2, which lends a false sense of legitimacy. The page title, "Online payment @ Legacy Ledger Co," further reinforces the impersonation attempt.
To protect against this brand impersonation threat, users should never enter any personal or financial information on this site. Always verify the legitimacy of any page claiming to be from Ledger by checking the official URL directly. Enable two-factor authentication on your Ledger accounts and use a password manager to avoid reusing credentials. Report suspicious domains to relevant authorities and block the domain at the network level if possible.
Istantanea delle prove inviate
- Inviato
- Voci del registro
- 1
- ID del caso
PD-20260529-906E0E- Titolo della pagina acquisita
- Online payment @ Legacy Ledger Co
- Artefatto PDF
- Prova in PDF
Base giuridica
Testo completo delle prove
Section 2.1 of AUP: The domain pay.legacy-ledgerco.com is engaged in phishing activities, attempting to deceive users into providing sensitive information, which directly contravenes the prohibition against fraud and deception.
Section 3.2 of TOS: The use of this domain for illegal activities, including phishing, constitutes a violation of the terms of service, granting the registrar the right to suspend or terminate services.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA) - 18 U.S.C. § 1030: This federal law prohibits unauthorized access to computers and the use of such access to commit fraud.
Wire Fraud - 18 U.S.C. § 1343: This statute criminalizes schemes to defraud individuals or entities using electronic communications, including phishing schemes.
CAN-SPAM Act - 15 U.S.C. § 7701: This law regulates commercial email and prohibits deceptive practices in electronic communications, which includes phishing.
Regulatory Note: Failure to take immediate action against this domain may result in liability for facilitating illegal activities and could expose your organization to regulatory scrutiny and potential penalties.
Data Coverage
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 13/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, nomi TLS e date
ICANN OVERSIGHT
Registration: legacy-ledgerco.com
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain legacy-ledgerco.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologie
1 tecnologia identificata con alta affidabilità
Analisi di VirusTotal
Prove archiviate
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo