app-ledqer[.]app
“Access Restricted”
Зведення доказів
Analysis identifies app-ledqer.app as a generic phishing domain. The site title 'Access Restricted' is a common obfuscation technique. No specific brand impersonation is confirmed beyond the domain name suggesting 'Ledger', a known cryptocurrency hardware wallet brand. No drainer kit has been identified in the current passive analysis.
Technical indicators: VirusTotal detection rate is 2 out of 95 security vendors. The domain was created on June 27, 2026. It is registered through NICENIC INTERNATIONAL GROUP CO., LIMITED. The domain resolves to IP address 188.114.96.3. SSL certificate is issued by Google Trust Services. Google Safe Browsing (GSB) status is not listed as malicious in the provided intelligence. No blocklist count is available from the given data.
The domain remains active as of the time of analysis. Recommended response actions include blocking the domain at the network perimeter, adding it to threat intelligence blocklists, and notifying the hosting provider (Cloudflare, given the IP range). Remaining risk is high because the domain is still live and may be used to harvest credentials or cryptocurrency wallet information. Users should be advised to avoid visiting the domain and to verify any communications claiming to be from Ledger through official channels.
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-20260628-CA678D- PDF-файл
- PDF із доказами
Правова підстава
Повний текст доказів
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 12.08.2026
8 зовнішніх джерел під наглядом Збігів немає
Збережені докази результату
Результат і атрибуція блокування
- Результат
held- Доступність
unreachable- Причина
registrar_client_hold- Учасник
- NICENIC INTERNATIONAL GROUP CO., LIMITED
- Механізм
client_hold- Упевненість
- 95%
- Перше спостереження
- Останнє спостереження
Оцінка часу недоступності
Час до недоступності: 0 hSHA-256 доказу 3b40a1d1e38c
Хронологія виявлення
-
Доступність
Перше збережене значення: DNS неактивний
f93a11f87e4d -
Доступність
DNS неактивний → Невідомо
79ecfeadfb0e -
Доступність
Невідомо → DNS неактивний
9efdf543f5ef -
Доступність
DNS неактивний → Утримується
39b4f6728a35 -
Доступність
Утримується → DNS неактивний
f52d526b76a1 -
Доступність
DNS неактивний → Невідомо
249e011eb971 -
Доступність
Невідомо → Утримується
5da7dc9eac45 -
Доступність
Утримується → Невідомо
a5c66649b5fb -
Доступність
Невідомо → DNS неактивний
6dfe9145995c -
Доступність
DNS неактивний → Утримується
2b345a410fa0
Показати всі (9)
-
Доступність
Утримується → DNS неактивний
641ed81dc4d5 -
Доступність
DNS неактивний → Невідомо
dfb8529974c2 -
Доступність
Невідомо → Утримується
e851594f9699 -
Доступність
Утримується → Невідомо
6d8640f91a33 -
Доступність
Невідомо → DNS неактивний
d0b7046e8c2f -
Доступність
DNS неактивний → Утримується
3249e5ccbede -
Доступність
Утримується → DNS неактивний
ca9ed662b468 -
Доступність
DNS неактивний → Невідомо
da421d69a1e2 -
Доступність
Невідомо → Утримується
3b40a1d1e38c
Повідомлення спільноти
Повідомили 0 учасників спільноти; уперше помічено 28.06.2026
- Унікальні URL
- 1
Дані спільноти
2 повідомлення спільноти
КатегоріяPHISHING
On June 28, 2026, I was the victim of a phishing attack while trying to access the official Ledger Live wallet application. I searched for the site on Google and clicked the first result, which was a fraudulent site impersonating the official Ledger website (URL: https://app-ledq
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології
Виявлено 3 технології з високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of app-ledqer.app · checked Jun 28, 2026
Схожі домени
Збережено 151 схожий домен
Показати всі (88)
Показано 100 із 151
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога