ledger-com[.]com
Verificação de phishing e segurança de ledger-com.com
“ledger官网 - Ledger钱包官网下载|Ledger冷钱包中文版购买入口”
ledger-com.com — Último ativo conhecido (HTTP 301). Representação da marca: Ledger; Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 12/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLScan malicious verdict; PhishDestroy score 100/100. Registrador: Dynadot.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
PhishDestroy identifies ledger-com.com as an active crypto drainer impersonating the Ledger wallet brand. This domain mimics the official Ledger Chinese-language interface to deceive users into downloading malicious wallet software or entering seed phrases. The threat is categorized as a 'crypto drainer' due to its intent to steal cryptocurrency assets by tricking users into interacting with a fake wallet interface or malware distribution system.
This domain was flagged by 10 out of 95 security vendors on VirusTotal, indicating moderate detection but persistent malicious activity. It was registered through Dynadot Inc on December 10, 2025, making it a very recently established threat actor resource. The domain resolves to IP address 156.250.67.230 and uses a valid SSL certificate issued by Let's Encrypt, which may help it evade browser-based warnings. While the domain does not yet appear on Google Safe Browsing (GSB) blocklists, it has been reported widely enough to be included in multiple threat intelligence feeds. The age of the domain (just over one month) and its high-risk classification suggest it is part of a coordinated phishing campaign targeting Ledger users.
As of the latest scan, ledger-com.com remains active and fully operational, serving a fraudulent Ledger wallet page in Chinese. This domain is part of an ongoing campaign, and its continued availability suggests the threat actors are actively evolving their infrastructure. Users are strongly advised to avoid visiting this domain. If you suspect exposure, disconnect devices from the internet, revoke permissions for any connected crypto apps, and use PhishDestroy’s verification tool to confirm the legitimacy of Ledger-related websites. Due to the presence of a crypto drainer and the active nature of the domain, the risk level remains high. Users should treat all non-official Ledger domains with extreme caution and only use verified sources such as the official ledger.com domain.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of ledger-com.com · checked Apr 15, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo