Security Scan Report: ledger-securescan.com

Redirected to: https://ledger-securescan.com/ledgerDiagnosis.php

Site favicon
Submitted: Dec 16, 2025, 12:52:04 AMCompleted: Dec 16, 2025, 12:52:32 AMpubliccompleted
Loading additional data...

Summary

This website contacted 6 IPs in 2 countries across 2 domains to perform 35 HTTP transactions. The main domain is ledger-securescan.com and was registered NaN years ago.

Submitted URL: https://ledger-securescan.com/

Effective URL: https://ledger-securescan.com/ledgerDiagnosis.phpRedirected

AI Security Verdict

High Risk

Confidence: 95%

10
Risk Score

High‑risk phishing site impersonating Ledger; do not trust or use.

Risk Factors
Primary domain matches known phishing Indicator of Compromise
Brand impersonation of Ledger on a brand‑new, unranked domain
Domain age less than 7 days (critical risk)
Domain age information unavailable

Details

Page Title

Ledger Live

Scan Type

public

Language

🇺🇸

English

(51% confidence)

Category

finance banking

(79%)

Domain Information

The domain name 'ledger-securescan.com' uses the commercial generic top-level domain (.com) without a subdomain. Count 17 characters in 'ledger-securescan' split between six vowels and ten consonants, notching one hyphen. Tokenizing the label suggests three words: ledger, secures, can. Expect 6 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ledger-securescan.com/

Page Load Overview

4.46s
Total Load Time
35
HTTP Requests
2
Domains
8.0 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:51%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:51%
Script Type:Latin
Text Length:1,237 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking79% confidence
Type: dynamic
Method: ml+structural+ocr_tiebreaker

All Detected Categories

finance banking
79%
cryptocurrency blockchain
70%
cryptocurrency
22%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
5172.67.188.46United States
AS13335CLOUDFLARENET
5142.250.186.163United States
AS15169GOOGLE
5104.21.81.48United States
AS13335CLOUDFLARENET
52606:4700:3035::ac43:bc2eUnited States
AS13335CLOUDFLARENET
52606:4700:3037::6815:5130United States
AS13335CLOUDFLARENET
52a00:1450:4001:82a::2003Frankfurt am Main, Hesse, Germany
AS15169GOOGLE
356--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T104A4C67443044AF4E95F475FDEFEFE2021A437C7ABE88064F169B1914BBAE9610390DA

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:UhW7eLjVPS87Avy7ljNNE5cU2aXmrULycaDgr:gP0UjNN8cRYmrUsUr

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:461399:LGKIBCuqAGpRowyIIgA5hgAQJgoBSBGE0wWCZRAEExwwXGtYxQcSEIUf9ZBIEFMQBBywYQgFC1jEECkARAHUImQJMdVAcgwB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:3f3f20202020603f
Perceptual Hash:839f9e619c6203fc
Difference Hash:fbc0c0c0d1cdc9f0
Wavelet Hash:3f3f30302020ff3f
Color Hash:#7f40bf

Scan History

Scan history not available

Unable to load historical scan data