MALICIOUS — CRITICAL
login-ledgger-load-io-queue.vercel.app: Active Ledger Crypto
login-ledgger-load-io-queue[.]
This domain is flagged as an active high-risk phishing site specializing in crypto asset theft through brand impersonation.
- VirusTotal
- 15/92
- Blocklists
- 2 · MetaMask, SEAL
- Kullanılabilirlik
- Gizlenmiş · ulaşılabilir · HTTP 308
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
login-ledgger-load-io-queue.vercel.app — Gizlenmiş · ulaşılabilir (HTTP 308). Marka kimliğine bürünme: Ledger; Dolandırıcılık türü: Credential Phishing. Kanıt özeti: VirusTotal 15/92 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLQuery 3 alerts; 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 100/100. Kayıt kuruluşu: Vercel.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Evidence Analysis
This domain is flagged as an active high-risk phishing site specializing in crypto asset theft through brand impersonation. Analysis indicates the infrastructure is designed to mimic legitimate hardware wallet interfaces, specifically targeting users of the Ledger platform. The threat type is classified as a crypto drainer, where victims are tricked into connecting wallets to malicious smart contracts, resulting in unauthorized fund transfers. Infrastructure analysis reveals the domain login-ledgger-load-io-queue.vercel.app was registered through Vercel on May 08, 2026, and resolves to the IP address 216.198.79.67, hosted by a provider in the United States. The SSL certificate is issued by Google Trust Services, adding a superficial layer of legitimacy. Detection metrics show 15 out of 95 security vendors on a major scanning platform have flagged the domain as malicious. The domain appears on three security blocklists, including those maintained by PhishDestroy, MetaMask, and SEAL. The page title, 'Ledger® Hardware Wallet | Secure Your Crypto Assets,' closely mirrors the legitimate Ledger branding, further confirming the intent of brand impersonation. Mitigation against this threat requires heightened user awareness and technical safeguards. Users should verify domain authenticity by cross-referencing official communication channels before interacting with any wallet-related interface. Wallet software integrations should enforce strict origin checks to block connections to untrusted domains. Network-level protections, such as DNS filtering or IP-based blocking of 216.198.79.67, can prevent access to the malicious infrastructure. Organizations managing crypto assets should implement multi-signature requirements and hardware-based authentication to reduce the risk of unauthorized transactions. Given the domain's active status, continuous monitoring of related infrastructure is recommended to preempt potential redirects or newly registered variants.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Veri kapsamı12 recorded checks
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | login-ledgger-load-io-queue.vercel.app |
malicious | Sinkholed |
| OpenDNS | login-ledgger-load-io-queue.vercel.app |
phishing | Phishing Block |
| DNS4EU | login-ledgger-load-io-queue.vercel.app |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
VirusTotal Analizi
Kanıtlar ve Dış RaporlarIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.