Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@globaldomaingroup.com.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
ledgera[.]top
ledgera.top için kimlik avı ve güvenlik kontrolü
“Ledgera - Wallet”
ledgera.top — Bilinen son aktif (HTTP 200). Marka kimliğine bürünme: Ledger; Dolandırıcılık türü: Brand Impersonation. Kanıt özeti: VirusTotal 5/91 (alphaMountain.ai, CRDF, Fortinet, Gridinsoft, SOCRadar); URLQuery 1 alert; Spamhaus DBL_SPAM; PhishDestroy score 80/100. Kayıt kuruluşu: Global Domain Group.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
PhishDestroy identifies ledgera.top as an active brand impersonation site targeting Ledger wallet users. The domain mimics the legitimate ledger.com with a page titled 'Ledgera - Wallet,' attempting to trick visitors into entering recovery phrases or private keys. This technique is commonly used to drain cryptocurrency wallets once credentials are obtained. Users should treat any unexpected wallet-related domains with extreme caution to avoid financial loss.
This domain was flagged through PhishDestroy’s automated analysis pipeline using seed 44eccd. Technical indicators include resolution to IP 78.46.40.242, a Let's Encrypt SSL certificate, and registration via Global Domain Group LLC on April 16, 2026. VirusTotal currently shows 0 detections out of 95 engines, indicating this threat is still flying under the radar. Early detection remains critical given the low global awareness of this newly registered domain. The registrar and hosting infrastructure are consistent with fast-flux or bulletproof hosting behaviors often observed in crypto-theft campaigns.
If you have visited ledgera.top—or entered any wallet recovery or private key information—immediately transfer remaining funds to a new, isolated wallet. Revoke any connected device permissions via Ledger Live or the official app, and reset passwords on all related accounts. Report the incident to Ledger support and file a complaint with your local cybercrime unit or IC3. Do not re-use wallet seeds or passwords. Monitor blockchain transactions closely for unauthorized transfers. Enable multi-factor authentication everywhere possible, and avoid clicking links in unsolicited emails or social media messages claiming to be from Ledger. Always confirm official URLs through verified sources before interacting with wallet software.
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | ledgera.top |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analizi
Site Yapılandırma Analizi
Kanıtlar ve Dış Raporlar
PD-20260422-EEE41B Recipient: abuse@globaldomaingroup.com Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin