leggers-lives[.]com
“Buy Ledger Nano X & S Plus | Official Crypto Wallet Store”
leggers-lives.com — 콘텐츠를 사용할 수 없음. 브랜드 사칭: Ledger; 사기 유형: Brand Impersonation. 증거 요약: VirusTotal 6/91 (Emsisoft, Forcepoint ThreatSeeker, Fortinet, G-Data, Netcraft); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 90/100. 등록기관: MAT BAO.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
Domain leggers-lives.com has been flagged for active brand impersonation activities targeting users through false representations of a legitimate brand or service. Infrastructure analysis reveals that this domain resolves to IP address 104.21.43.178, which is currently operational and hosting the fraudulent content. The domain employs Cloudflare nameservers (bjorn.ns.cloudflare.com, ulla.ns.cloudflare.com), a common tactic to obfuscate hosting infrastructure and hinder takedown efforts. While no detections have been recorded on VirusTotal, the absence of signatures does not equate to safety, as threat actors frequently deploy new infrastructure to evade detection. The domain was registered on June 22, 2026, through MAT BAO CORPORATION, a registrar associated with numerous fraudulent activities due to lax verification processes. The lack of blocklist entries at the time of analysis further highlights the domain's recency and the need for proactive monitoring.
Analysis indicates that leggers-lives.com is engineered to deceive users into entering sensitive credentials or financial information under the guise of a legitimate service. This deception typically involves mimicking the login portals of well-known brands, payment processors, or financial institutions to harvest credentials or payment details for subsequent misuse. The infrastructure—hosted on a shared IP allocated to Cloudflare—suggests an attempt to blend with legitimate traffic, complicating network-based detection. The domain's recent creation and zero VirusTotal detections underscore the importance of behavioral and heuristic analysis in identifying emerging threats. Given the absence of historical data, users are advised to treat all interactions with this domain as potentially malicious until further intelligence is gathered.
Users who have visited leggers-lives.com should immediately cease any further interaction with the domain and assess whether any credentials or payment information were entered. If credentials were provided, those credentials should be reset immediately, and a password change should be performed on other accounts using the same or similar credentials. If financial details were entered, contact the relevant financial institution to report unauthorized access and request account monitoring or card replacement. Users should also clear browser cache and cookies related to the domain to remove any stored session tokens that could be exploited for unauthorized access. Organizations should consider blocking the domain and its associated IP at the network perimeter to prevent further exposure. Continuous monitoring of this domain is recommended due to its active status and evolving threat landscape.
위협 대응 Pipeline
공개 차단 목록 상태
저장된 캡처
도메인 인텔리전스
기술적 세부 사항DNS, SSL SAN, 타임스탬프
ICANN OVERSIGHT
인증 및 RAA 상황
인증 및 RAA 상황
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 분석
증거 및 외부 보고서
PD-20260624-D1646A Recipient: abuse@matbao.com 이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.