team-ledger[.]com
“Ledger Crypto Wallet - Security for DeFi & Web3”
Resumo das evidências
PhishDestroy identifies team-ledger.com as a fraudulent domain masquerading as the official Ledger cryptocurrency wallet platform. This site is designed to deceive users into entering sensitive credentials or downloading malicious software by exploiting Ledger’s trusted brand reputation. Attackers often use impersonation domains to harvest private keys, seed phrases, or personal data—credentials that can lead to direct financial loss. Users who encounter this site should avoid interacting with it and report it immediately to Ledger’s official security channels. The domain leverages visual similarities and urgent language to pressure visitors into taking hasty actions, a hallmark of modern credential phishing campaigns. This domain was flagged by PhishDestroy’s automated pipeline using seed f17b7e and is currently under active investigation. Technical analysis reveals it was registered on May 15, 2025, through GoDaddy.com, LLC and resolves to IP address 15.197.225.128. Notably, the domain holds a valid SSL certificate issued by GoDaddy.com, Inc., which may help it evade browser-based detection due to the appearance of legitimacy. As of the latest scan, the domain remains undetected by 95 VirusTotal engines (0/95 detections), highlighting the need for proactive threat intelligence sharing. The combination of a newly registered domain, low detection rate, and brand impersonation raises the risk level to active investigation status. If you visited team-ledger.com, do not enter any credentials, download files, or connect your Ledger device. Disconnect from the internet if possible and run a full antivirus scan on your device. Report the domain to Ledger’s official phishing reporting form or your cybersecurity team. Block the domain at your network and DNS level using 15.197.225.128 and team-ledger.com to prevent further exposure. Monitor your cryptocurrency wallets and financial accounts for unauthorized transactions. Always verify URLs by typing them manually or using bookmarks to official sites—never click links from unsolicited emails or ads.
Data Coverage
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 11/08/2026
10 fontes externas monitoradas Sem correspondência
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, nomes TLS e datas
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologias
16 tecnologias identificadas com alta confiança
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo