MALICIOUS — CRITICAL
require-ledger[.]com
The domain require-ledger.com has been identified as a brand impersonation phishing domain specifically targeting Ledger cryptocurrency wallet users.
- VirusTotal
- 14/93
- Blocklists
- No stored match
- Disponibilidade
- Conteúdo indisponível · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
require-ledger.com — Conteúdo indisponível (HTTP 502). Representação da marca: Ledger; Tipo de golpe: Crypto Scam. Resumo das evidências: VirusTotal 14/93 (ADMINUSLabs, BitDefender, CRDF, Certego, Chong Lua Dao); Spamhaus DBL_SPAM; PhishDestroy score 92/100. Registrador: Dominet (HK).
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Evidence Analysis
The domain require-ledger.com has been identified as a brand impersonation phishing domain specifically targeting Ledger cryptocurrency wallet users. This domain is now offline, but while active it posed a high risk to users seeking Ledger support or services. The threat type is a crypto drainer, designed to trick visitors into connecting their wallets and surrendering private keys or signing malicious transactions.
Analysis of the domain reveals it was flagged by 14 out of 95 VirusTotal security vendors, indicating broad consensus on its malicious nature. It appears on three security blocklists and was found in one AlienVault OTX threat intelligence pulse. The domain was created on November 02, 2025, and registered through Dominet (HK) Limited, a registrar often associated with suspicious domains. It resolved to IP address 80.66.87.123 and had no SSL certificate, further indicating its lack of legitimacy. These technical indicators, combined with the domain's explicit impersonation of Ledger, confirm its purpose as a phishing and crypto-draining operation.
The domain has been taken offline, but users should remain vigilant. PhishDestroy recommends that anyone who interacted with require-ledger.com immediately change their Ledger-related passwords and enable two-factor authentication. Never connect your hardware wallet to unknown websites, and always verify URLs through official Ledger channels. If you suspect your Ledger device was compromised, transfer funds to a new seed phrase immediately. Stay safe by bookmarking official websites and avoiding unsolicited links.
Cobertura dos dados12 recorded checks
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análise do VirusTotal
Evidências arquivadas
Evidências e relatórios externosIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.