Security Scan Report: v1-ledger.live

Redirected to: https://v1-ledger.live/

Site favicon
Submitted: Nov 23, 2025, 11:01:54 AMCompleted: Nov 23, 2025, 11:03:25 AMpubliccompleted
Loading additional data...

Summary

This website contacted 7 IPs in 2 countries across 2 domains to perform 11 HTTP transactions. The main domain is v1-ledger.live and was registered NaN years ago.

Submitted URL: http://v1-ledger.live/

Effective URL: https://v1-ledger.live/Redirected

AI Security Verdict

High Risk

Confidence: 95%

10
Risk Score

Impersonates Ledger Live on a new, unranked domain – high‑risk phishing site.

Risk Factors
Brand impersonation of Ledger on a non‑official domain
New domain (<90 days) used for brand‑related content
UNRANKED domain (not in Cisco Umbrella top 1M) presenting a major brand
Domain age information unavailable

Details

Page Title

Ledger Live Download - Secure Cryptocurrency Wallet Management

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

cryptocurrency blockchain

(47%)

Domain Information

You're looking at domain 'v1-ledger.live' on the .live top-level domain while skipping any subdomain. The registrable portion 'v1-ledger' spans 9 characters holding 2 vowels versus 5 consonants; bonus characters include 1 digit and 1 hyphen. Breaking it apart gives three words: v, 1, ledger. The median word length lands at 1 character. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://v1-ledger.live/

Page Load Overview

1.08s
Total Load Time
11
HTTP Requests
2
Domains
433 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:3,995 chars
Detector Agreement:60%

Website Classification

Primary Category

cryptocurrency blockchain47% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

cryptocurrency blockchain
47%
technology software
44%
corporate
35%
finance banking
34%
cryptocurrency
30%

Detected Features

OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
8185.185.71.63Russia
AS35278Sprinthost.ru LLC
5172.67.68.11United States
AS13335CLOUDFLARENET
1104.26.3.143United States
AS13335CLOUDFLARENET
12606:4700:20::ac43:440bUnited States
AS13335CLOUDFLARENET
12606:4700:20::681a:28fUnited States
AS13335CLOUDFLARENET
12606:4700:20::681a:38fUnited States
AS13335CLOUDFLARENET
1104.26.2.143United States
AS13335CLOUDFLARENET
117--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T14323D53E62F1107B199381F6F6A6632DBB35D087D81FC989B3AD42495FC6DA68D43308

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:HOmCLZhL7nk+WbQrMiGeoF77g7he122BMpBOki0bXPlW:HOmCthnk+WbQIiGeoR7gAMpBOiW

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:47607:ZpBKgsOICSEoCGguKDiACkwkOUAAkBzEQwIUMjhCIEAMZwgwYQIwFKIaIHNmNwAhFFAguILBQMggEQwbQRPCEADUBFhSAhXA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff000000ffffffff
Perceptual Hash:820ad1f7fc0ce4d3
Difference Hash:45fdfff7cf0e0c10
Wavelet Hash:fc00000067e7efff
Color Hash:#c6d279

Scan History

Scan history not available

Unable to load historical scan data