battery-support-ledger-livelogin-e7[.]vercel[.]app
“Ledger® Hardware Wallet | Secure Your Crypto Assets”
battery-support-ledger-livelogin-e7.vercel.app — 隐形 · 可达. 品牌冒充:Ledger; 诈骗类型:Credential Phishing. 证据摘要: VirusTotal 12/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, ESET, Fortinet); 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 100/100. 注册商: Vercel.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis indicates that the domain battery-support-ledger-livelogin-e7.vercel.app is an active credential-phishing operation targeting users of Ledger hardware wallets. The domain was registered on May 6, 2026, and currently resolves to the IP address 216.198.79.195, hosted by Vercel, Inc. in the United States. The page title, 'Ledger® Hardware Wallet | Secure Your Crypto Assets,' directly impersonates Ledger, a well-known provider of cryptocurrency security solutions. This aligns with the identified scam type: credential phishing. Infrastructure analysis reveals the domain is served with an SSL certificate issued by Google Trust Services (WR1), which may lend an appearance of legitimacy but does not mitigate the threat. The HTTP status code 308 (Permanent Redirect) suggests the domain may be part of a multi-stage redirection chain, a common tactic in phishing campaigns to obscure the final malicious destination. The domain appears on three security blocklists and is actively blocked by at least three security providers, including MetaMask and SEAL, further corroborating its malicious classification. VirusTotal reports that 14 out of 91 security vendors flag this domain as malicious, providing additional third-party validation of the threat. The Gridinsoft trust score of 0/100 reinforces the high-risk assessment. While the exact content of the phishing page remains unanalyzed, the combination of brand impersonation, blocklist presence, and low trust scores confirms the domain is actively engaged in credential theft targeting cryptocurrency users. Defenders should treat this domain as hostile and prioritize blocking or takedown efforts. Users encountering this domain should avoid interaction and report it to their security teams or relevant fraud reporting channels.
威胁响应 Pipeline
公共封禁名单状态
域名情报
技术细节DNS、SSL SAN、时间戳
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。