legder[.]com[.]es
“api.www.legder.com.es”
Зведення доказів
This domain, legder.com.es, is flagged as an elevated risk Ledger impersonation scam. The domain impersonates the well-known cryptocurrency hardware wallet brand, Ledger, and appears in one security blocklist, further indicating its malicious nature. Analysis of the domain reveals that it resolves to the IP address 69.67.173.29, which is associated with BNL-77 (ASN: 399629) and located in Romania (AS399629 BL Networks). The nameservers used are ns1.openprovider.nl, ns2.openprovider.be, and ns3.openprovider.eu, suggesting the domain is registered through Openprovider.
Notably, the domain does not have an SSL certificate, which is a common red flag for phishing sites as legitimate financial services typically use secure connections. As of the report date, July 23, 2026, the domain is offline, and it has been flagged by PhishDestroy, a reputable security blocklist. The Gridinsoft trust score for this domain is 0 out of 100, indicating a complete lack of trustworthiness. Additionally, the domain has been mentioned in two threat intelligence pulses on AlienVault OTX, further corroborating its malicious intent.
The page title found is 'api.www.legder.com.es', which does not provide clear evidence of the exact content of the site, but the domain’s association with Ledger and its current offline status suggest it was likely used for wallet or seed phishing activities. Defenders should be vigilant and ensure that all users are aware of this domain and its risks, particularly in the context of cryptocurrency wallet impersonation. They should also update their security protocols to block this domain and monitor for any related malicious activity. While the domain is currently offline, it is important to remain cautious as such domains can be taken back online with minimal effort by threat actors.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
VirusTotal
13 → 12
-
VirusTotal
12 → 13
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
-
Статус домену
Доступний → Недоступний
-
Статус домену
Недоступний → Доступний
Повідомлення спільноти
Повідомив 1 учасник спільноти; уперше помічено 07.10.2025
- Збережені повідомлення
- 1
- Унікальні URL
- 1
Дані спільноти
1 повідомлення спільноти
КатегоріяPHISHING
Detection Summary The Anti-Phishing Volunteers & Associates Security Incident Response System has flagged this as a domain threat, classified as phishing attack against Ledger. Threat detected at 2025-10-14T06:08:49.849Z.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of legder.com.es · checked Mar 2, 2026
Схожі домени
Збережено 151 схожий домен
Показати всі (88)
Показано 100 із 151
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога