airdrop-openledger[.]com
“Suspected phishing site | Cloudflare”
Сохранённое наблюдение
Зафиксированное различие заголовков
Сводка доказательств
PhishDestroy identifies airdrop-openledger.com as a confirmed brand impersonation site, specifically targeting the Ledger brand, which is a well-known company in the cryptocurrency and blockchain space. This domain was flagged for its malicious intent to deceive users into divulging sensitive information. The brand impersonation threat type is particularly concerning as it preys on the trust users have in reputable brands like Ledger.
The domain airdrop-openledger.com has several notable technical indicators, including a VirusTotal score of 2/95, indicating that only a couple of security vendors have flagged it as malicious, while the rest remain unaware of its true nature. It was registered through OwnRegistrar, Inc. and resolves to the IP address 104.21.9.109. Furthermore, this domain was created on February 21, 2026, and has already appeared on 2 security blocklists, highlighting its rapid involvement in malicious activities. The SSL certificate issued by Google Trust Services / WE1 adds a layer of authenticity to the site, making it even more deceptive to unsuspecting visitors.
Currently, the status of airdrop-openledger.com is active, posing an elevated risk to users who may stumble upon it. Despite being flagged by some security vendors, the domain remains operational, and its ability to impersonate Ledger could lead to significant financial losses for victims. In response, users are advised to exercise extreme caution when interacting with websites that request sensitive information, especially those that claim to be affiliated with reputable brands like Ledger. The remaining risk associated with this domain necessitates constant vigilance and a thorough review of the full report to understand the nature of this threat and how to protect against it.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
9 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Статус домена
Доступен → Недоступен
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
-
Статус домена
Недоступен → Доступен
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Анализ конфигурации сайта
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание