public-live-ledger[.]me-page[.]com
“public-live-ledger.me-page.com | 525: SSL handshake failed”
public-live-ledger.me-page.com — Non verificato. Simulazione del marchio: Ledger; Tipo di truffa: Crypto Scam. Riepilogo delle prove: VirusTotal 1/91 (Gridinsoft); PhishDestroy score 71/100. Registrar: GoDaddy.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
The domain public-live-ledger.me-page.com was registered on 21 February 2026 through GoDaddy.com, LLC. It resolves to the IP address 104.21.70.73, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. The authoritative nameservers are simone.ns.cloudflare.com and sri.ns.cloudflare.com, indicating that the domain is fully serviced by Cloudflare’s DNS and edge network. The site is currently reachable and returns HTTP status code 525, reporting a “SSL handshake failed” condition in the page title. The TLS certificate presented by the server is issued by Google Trust Services under the WE1 certificate authority. Despite the presence of a legitimate‑looking certificate, the Gridinsoft trust score for the domain is 0 out of 100, reflecting an extremely low reputation. VirusTotal analysis shows that 1 of 95 scanned security vendors flagged the domain, and the domain appears on a single public blocklist. The infrastructure also advertises support for HTTP/3, which is consistent with Cloudflare’s modern edge platform. The domain is classified as a brand‑impersonation campaign targeting the Ledger brand and is associated with cryptocurrency‑related scams. It is actively blocked by PhishDestroy, confirming that defensive feeds consider it malicious. The combination of a valid‑looking SSL certificate, Cloudflare front‑end, and a low trust score suggests an attempt to lend credibility while abusing Ledger’s brand reputation to lure victims. Defenders should add the domain and its resolving IP 104.21.70.73 to blocklists at the network perimeter and endpoint security solutions. Continuous monitoring of DNS queries for the listed nameservers can help detect additional sub‑domains that may be created under the same infrastructure. Given the recent registration date and the active blocklist entry, the threat is ongoing and should be treated as high risk until the domain is taken down or the associated infrastructure is dismantled.
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Registration: me-page.com
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain me-page.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologie · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analisi di VirusTotal
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo