MALICIOUS — HIGH
saviledger[.]com
saviledger.com poses a significant risk by impersonating the well-known Ledger brand.
- VirusTotal
- 2/94
- Blocklists
- No stored match
- Доступність
- Контент недоступний · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
saviledger.com — Контент недоступний (HTTP 502). Уособлення бренду: Ledger; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 2/94 (alphaMountain.ai, CRDF); URLQuery 2 alerts; PhishDestroy score 62/100. Реєстратор: Namecheap.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
saviledger.com poses a significant risk by impersonating the well-known Ledger brand. It presents itself as a secure crypto asset backup platform, which can mislead users into entering sensitive information such as private keys or login credentials. This type of brand impersonation is often used to drain cryptocurrency wallets or steal digital assets.
PhishDestroy has flagged saviledger.com for this threat based on several key indicators. The domain was created recently on March 8, 2026, and is registered through NAMECHEAP INC. Despite being active, it has a VirusTotal score of 2 out of 95 detections, which suggests it has not yet been widely detected as malicious by antivirus engines. However, these low detection rates are common in new impersonation scams. The domain resolves to IP 67.223.118.14 and uses an SSL certificate issued by Sectigo Limited, which can give a false sense of legitimacy.
If you have visited saviledger.com, it is important to avoid entering any private or sensitive data. Users who suspect they may have submitted information should immediately review their Ledger or other crypto wallets for unauthorized activity and consider transferring their assets to a secure wallet. Always verify the official Ledger website URL and check resources like PhishDestroy to confirm the legitimacy of any crypto-related platform before use.
Обсяг даних12 recorded checks
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 5 identified
JivoChat is a live chat solution for websites offering customizable web and mobile chat widgets.
www.jivosite.com 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% впевненостіАналіз VirusTotal
Докази та зовнішні звітиIndependent lookups and source reports
PD-20260422-D56543 Recipient: abuse@namecheap.com Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.