leggers-lives[.]com
“Buy Ledger Nano X & S Plus | Official Crypto Wallet Store”
leggers-lives.com — İçerik kullanılamıyor. Marka kimliğine bürünme: Ledger; Dolandırıcılık türü: Brand Impersonation. Kanıt özeti: VirusTotal 6/91 (Emsisoft, Forcepoint ThreatSeeker, Fortinet, G-Data, Netcraft); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 90/100. Kayıt kuruluşu: MAT BAO.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Domain leggers-lives.com has been flagged for active brand impersonation activities targeting users through false representations of a legitimate brand or service. Infrastructure analysis reveals that this domain resolves to IP address 104.21.43.178, which is currently operational and hosting the fraudulent content. The domain employs Cloudflare nameservers (bjorn.ns.cloudflare.com, ulla.ns.cloudflare.com), a common tactic to obfuscate hosting infrastructure and hinder takedown efforts. While no detections have been recorded on VirusTotal, the absence of signatures does not equate to safety, as threat actors frequently deploy new infrastructure to evade detection. The domain was registered on June 22, 2026, through MAT BAO CORPORATION, a registrar associated with numerous fraudulent activities due to lax verification processes. The lack of blocklist entries at the time of analysis further highlights the domain's recency and the need for proactive monitoring.
Analysis indicates that leggers-lives.com is engineered to deceive users into entering sensitive credentials or financial information under the guise of a legitimate service. This deception typically involves mimicking the login portals of well-known brands, payment processors, or financial institutions to harvest credentials or payment details for subsequent misuse. The infrastructure—hosted on a shared IP allocated to Cloudflare—suggests an attempt to blend with legitimate traffic, complicating network-based detection. The domain's recent creation and zero VirusTotal detections underscore the importance of behavioral and heuristic analysis in identifying emerging threats. Given the absence of historical data, users are advised to treat all interactions with this domain as potentially malicious until further intelligence is gathered.
Users who have visited leggers-lives.com should immediately cease any further interaction with the domain and assess whether any credentials or payment information were entered. If credentials were provided, those credentials should be reset immediately, and a password change should be performed on other accounts using the same or similar credentials. If financial details were entered, contact the relevant financial institution to report unauthorized access and request account monitoring or card replacement. Users should also clear browser cache and cookies related to the domain to remove any stored session tokens that could be exploited for unauthorized access. Organizations should consider blocking the domain and its associated IP at the network perimeter to prevent further exposure. Continuous monitoring of this domain is recommended due to its active status and evolving threat landscape.
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analizi
Kanıtlar ve Dış Raporlar
PD-20260624-D1646A Recipient: abuse@matbao.com Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin