Security Scan Report: ledger-us-live-login.vercel.app

Site favicon
Submitted: Dec 7, 2025, 3:22:34 AMCompleted: Dec 7, 2025, 3:23:56 AMpubliccompleted
Loading additional data...

Summary

This website contacted 14 IPs in 1 country across 5 domains to perform 25 HTTP transactions. The main domain is ledger-us-live-login.vercel.app.

Submitted URL: https://ledger-us-live-login.vercel.app/

AI Security Verdict

Confirmed Scam

Confidence: 92%

9
Risk Score

Impersonates Ledger login on a new unranked domain; likely phishing scam.

Risk Factors
Brand impersonation on an unranked, newly created domain
Domain does not match official Ledger domain
Hosting on a generic platform subdomain (vercel.app) commonly used for phishing
Domain age information unavailable

Details

Page Title

Ledger® Live Login® (en-US) | Ledger Support

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

social media network

(69%)

Domain Information

Domain 'ledger-us-live-login.vercel.app' uses the application-focused generic top-level domain (.app) and includes subdomain 'ledger-us-live-login'. Its registrable label 'vercel' stretches across 6 characters containing two vowels alongside 4 consonants. Tokenizing the label suggests 2 words: ver, cel. Expect 3 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ledger-us-live-login.vercel.app/

Page Load Overview

0.29s
Total Load Time
25
HTTP Requests
5
Domains
670 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,181 chars
Detector Agreement:60%

Website Classification

Primary Category

social media network69% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

social media network
69%
cryptocurrency blockchain
31%
cryptocurrency
22%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
11172.66.161.212United States
AS13335CLOUDFLARENET
1164.29.17.3United States
AS16509AMAZON-02
1104.18.0.22United States
AS13335CLOUDFLARENET
1216.198.79.3United States
AS16509AMAZON-02
1104.16.175.226United States
AS13335CLOUDFLARENET
1104.20.42.169United States
AS13335CLOUDFLARENET
12606:4700:10::ac42:a1d4United States
AS13335CLOUDFLARENET
12606:4700::6812:16United States
AS13335CLOUDFLARENET
1104.18.1.22United States
AS13335CLOUDFLARENET
12606:4700:10::6814:2aa9United States
AS13335CLOUDFLARENET
2514--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1BD721E6568F2212E424652D69BE06F1A7EA38003D50EA516B1BD03CEDFD3EC29C4FB5C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:Ypg2kzkre4GaJfrTXsAXsrLXseXAuXzvtmSwN/BJnFMx:x2kQ+vr6Mx

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:16439:sTJEgBUQgqgXoAQAUYT96AgAIGKADygsDIEmHOCuQCB0GCRiq0CikQAQACXoQiJtgwAEEKAMoGfNjACrIBgQL0QBAMAIf5GR

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:f9006e6e0e00003d
Perceptual Hash:93916e6d91e9d292
Difference Hash:631cb8d8d8390169
Wavelet Hash:ff0c6e6e0e0000ff
Color Hash:#934c1f

Scan History

Scan history not available

Unable to load historical scan data