transaction-portal-ledger[.]com
transaction-portal-ledger.com — 콘텐츠를 사용할 수 없음 (HTTP 502). 브랜드 사칭: Ledger; 사기 유형: Crypto Scam. 증거 요약: VirusTotal 9/93 (ADMINUSLabs, alphaMountain.ai, CyRadar, ESET, Gridinsoft); PhishDestroy score 77/100. 등록기관: Dominet (HK).
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
The domain transaction-portal-ledger.com is identified as a brand impersonation threat targeting Ledger. This domain was set up to mimic the legitimate services provided by Ledger, a well-known cryptocurrency wallet provider. There was no specific drainer kit associated with this domain, but its aim appears to have been to deceive users into providing sensitive information under the guise of a legitimate brand.
Technical infrastructure analysis shows that the domain was flagged by 9 out of 95 security vendors on VirusTotal, indicating a significant likelihood of malicious intent. Registered through Dominet (HK) Limited, the domain resolves to IP address 80.66.87.123 located in Germany under AS216127 INTERNATIONAL HOSTING COMPANY LIMITED. It was created on October 29, 2025, and is currently blocked by multiple security services including PhishDestroy, MetaMask, and SEAL. Furthermore, the domain is listed on three security blocklists, pointing to its recognition as a potential threat in digital threat intelligence databases.
As of now, transaction-portal-ledger.com has been taken offline, reducing immediate risk exposure. However, the impersonation threat remains significant due to its prior online presence and the potential for future domains to replicate this strategy. Users are advised to remain vigilant for similar domains and to verify the authenticity of any site claiming to represent Ledger. Regular monitoring of security blocklists and verification of domain ownership can help mitigate risks associated with brand impersonation threats.
위협 대응 Pipeline
공개 차단 목록 상태
저장된 캡처
도메인 인텔리전스
기술적 세부 사항DNS, SSL SAN, 타임스탬프
ICANN OVERSIGHT
인증 및 RAA 상황
인증 및 RAA 상황
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 분석
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.