Перейти до звіту про безпеку
⚠️
Цей домен було позначено як шкідливий
Системи безпеки повідомляють про виявлення: 7. Публічні списки блокувань, які повідомляють про збіг: 2. Будьте дуже обережні — не вводьте облікові дані чи особисту інформацію.
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@namecheap.com. The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
1 month
Reports sent
1
Latest case ID
PD-20260702-A23929
Current status
Observed active at latest stored check
Безпека домену та аналіз загроз

leggerr-iive-desktop[.]to

“Ledger Live application | Desktop download for teams”

Загрозливий вердикт Критичний 85/100 оцінка доказів
Доступність Неперевірений Поточна доступність не перевірена
Виявлення VirusTotal: 7/91 Spamhaus DBL: DBL_PHISH Збережений список блокувань відповідає: 2 Уособлення бренду: Ledger
02.07.2026 Ledger 1 Report Sent CDN
Огляд звіту

leggerr-iive-desktop.to — Неперевірений. Уособлення бренду: Ledger; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 7/91 (BitDefender, Forcepoint ThreatSeeker, Fortinet, G-Data, Gridinsoft); URLScan malicious verdict; Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 85/100. Реєстратор: Namecheap.

Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.

Зведення доказів
КРИТИЧНИЙ
Посилання
3614DB1D
Оцінка
85/100

This domain is under investigation for brand_impersonation targeting Ledger, a cryptocurrency hardware wallet provider. The threat involves distributing counterfeit Ledger Live desktop applications, likely to harvest credentials or deploy malware. Analysis indicates the domain is designed to deceive users into downloading malicious software under the guise of legitimate Ledger software updates or installations. Infrastructure analysis reveals the domain leggerr-iive-desktop.to was registered on August 28, 2025, through NAMECHEAP INC. It resolves to IP address 172.67.188.205 and currently shows 0/95 detections on VirusTotal, suggesting it has not yet been widely flagged by security vendors. The SSL certificate is issued by Google Trust Services, which may lend a false sense of legitimacy to unsuspecting users. No blocklist entries or trust score degradations have been recorded as of this assessment. The page title, 'Ledger Live application | Desktop download for teams,' further reinforces the impersonation by mimicking official Ledger branding and terminology. Mitigation requires immediate action from network defenders and end-users. Organizations should block the domain leggerr-iive-desktop.to and its resolving IP 172.67.188.205 at the perimeter firewall or DNS level. End-users should be educated to verify the authenticity of Ledger Live downloads exclusively through the official Ledger website or verified app stores. Cryptocurrency wallet users are advised to enable multi-factor authentication and scrutinize download sources for discrepancies in domain names, SSL certificates, or unexpected redirects. Security teams should monitor for connections to the IP or domain in logs and investigate any endpoints that have interacted with this infrastructure.

VirusTotal
VirusTotal
7 det.
URLScan
URLScan
Сертифікат TLS
Google Trust Services / WE1
Вік
12 mo
Зафіксований статус
Неперевірений
PhishDestroy
DestroyList
У списку
Reports Sent
1
Обсяг даних VirusTotal 7 / 91 URLQuery source data unavailable PhishStats не перевірено OTX no community references CF Radar scan completed URLScan capture збережений звіт URLScan verdict malicious Блокування DNS не перевірено TLS valid certificate, 30d WHOIS 12 mo old Знімок екрана 2 captures · 2 sources Ланцюжок перенаправлень не досліджено

Процес реагування на загрози Pipeline

Відкриття
Checks
Reports
Доступність
19/20
Sent Report Recorded
Stored sent-report record for registrar NAMECHEAP INC, hosting provider, 2 abuse contacts
abuse@namecheap.comvlodanoiz@gmail.com
02.07.2026

Статус у публічних блоклистах

Збережений знімок

Аналітика доменів

Домен
URLScan Verdict Шкідливий score 100 Phishing brand: Ledger report ↗
Сервер / ASN cloudflare · AS13335 CLOUDFLARENET - Cloudflare, Inc., US
IP Context Cloudflare shared edge origin IP hidden Репутація Edge-IP не пов’язана з цим доменом.
Реєстратор Namecheap KZ(KZ)
IP-адреса 104.21.8.229 CDN
ГеолокаціяUS San Francisco, US
МережаAS13335 · Cloudflare, Inc.
Зворотний пошук IPviewdns.info → rapiddns.io →
Початкова IP-адреса прихована за проксі CDN. Результати зворотного IP для крайової адреси містять непов’язаних орендарів; для пошуку джерела потрібен пасивний DNS або дані прозорості сертифіката.
РеєстраціяСтворено 28.08.2025 (354d) Expires 28.08.2026
Elapsed Since First Report 11h
Що ми враховуємо Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Неперевірений.
Що містить кожен звіт Збережені записи вихідних звітів можуть посилатися на докази, доступні на той час, наприклад вердикти постачальників, реєстраційні дані, деталі хостингу, класифікації або знімки екрана. Ця сторінка не визначає точного доставленого корисного навантаження, квитанції, підтвердження чи дії одержувача.
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Вперше виявлено02.07.2026
DOM Analysisanalyzed 02.07.2026score 85/100
IoC Extractionscanned 29.07.20260 wallet · 0 Telegram IoCs
Submitted URLhttps://leggerr-iive-desktop.to/
Сервери іменbowen.ns.cloudflare.comcass.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 19.06.2026scanned 02.07.2026
Favicon Hash
Case ID
Заголовок сторінки
Ledger Live application | Desktop download for teams
Сертифікат TLS
Valid transport encryption · Виданий Google Trust Services / WE1 · valid for 30 days
Технології · 3 identified
Cloudflare Browser Insights
Analytics RUM

Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.

www.cloudflare.com 100% впевненості
Cloudflare
CDN

Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.

www.cloudflare.com 100% впевненості
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org 100% впевненості
Detected via Cloudflare Radar · Wappalyzer engine
Поскаржитися на цей домен Надішліть докази та допоможіть захистити інших

Аналіз VirusTotal

7 / 91 постачальників безпеки позначили цей домен
View on VT
Last analyzed
BitDefender
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
«Касперський»
SOCRadar
Аналіз продуктивності сайту

Google PageSpeed Insights — mobile performance audit of leggerr-iive-desktop.to · checked Jul 2, 2026

100
Good
Performance
FCP
0.78s
First Contentful Paint
LCP
0.78s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
0.78s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

Докази та зовнішні звіти

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260702-A23929 Recipient: abuse@namecheap.com
Page title stored with report: Ledger Live application | Desktop download for teams
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 176.4 KB

Чи вплинув на вас цей сайт?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.

Європол
Знайдіть офіційний канал звітності для вашої країни ЄС
National police directory
Остерігайтеся шахраїв, які обіцяють повернути втрачені кошти! Злочинці можуть знову зв’язатися з жертвами, видаючи себе за слідчих, адвокатів або агентів із відновлення. Не сплачуйте авансових зборів і не діліться обліковими даними. Дізнайтеся більше про шахрайство у сфері відшкодування збитків →

Зверніться до місцевих органів влади

Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.

Довідник 97 країн
Чернетка за допомогою штучного інтелекту — деталі інциденту обробляються постачальником штучного інтелекту Перегляньте та подайте його самостійно

Перевірити будь-який домен

Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування

Сканувати зараз

Повідомити про фішинг

Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту

Повідомити

Потокова стрічка про загрози

Останні звіти про фішинг і помічені зміни доступності

Відстежувати

Будьте в курсі подій, дбайте про свою безпеку

Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога

Потокова стрічка про загрози Оскаржити це оголошення
HTML · IFRAME

Вбудувати цей звіт

Поділіться цією інформацією про загрози на своєму веб-сайті або в блозі

embed.html
<iframe
  src="https://phishdestroy.io/uk/embed/domain/leggerr-iive-desktop.to"
  title="PhishDestroy threat report for leggerr-iive-desktop.to"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>