appgallery.ledgerliveapp.lol
Category: Malicious
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of appgallery.ledgerliveapp.lol
This domain appears to present itself as a web interface for Ledger Live, a cryptocurrency wallet and digital-asset management platform. The page title, on-page branding, and screenshot all reference Ledger and promote features such as managing, buying, and growing crypto and NFTs, suggesting that the site is attempting to attract users looking for wallet access or onboarding.
Based on the domain structure, however, this does not appear to be an official Ledger-owned web address. Instead, it uses the brand name within a longer subdomain on an unrelated .lol domain, which may indicate an unofficial or deceptive setup. The page itself appears to be a simple React-based landing page with limited visible company information, and no clear evidence in the provided data that it is operated by the legitimate Ledger organization.
Safety Assessment for appgallery.ledgerliveapp.lol
Multiple security signals indicate elevated risk at the time of this scan. The domain was flagged by 10 out of 91 security engines, and multiple web-classification sources categorized it as phishing or malicious. In addition, the page visually presents Ledger branding while using a domain name that closely imitates Ledger Live without matching the brand's expected official domain pattern, which may be consistent with a look-alike phishing setup intended to collect wallet credentials, seed phrases, or other sensitive information.
At the same time, not every scan source agreed: the malware file scan did not identify flagged files, and major blacklist databases included in this dataset were clean at the time of review. That said, clean file results do not offset strong phishing indicators when the primary concern is deceptive branding and credential harvesting rather than malware delivery.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was reachable over HTTPS with a valid Let's Encrypt certificate that was current at the time of the scan. It appears to be hosted on an Apache web server at IP address 147.78.2.61 through infrastructure associated with Oneprovider.com, with hosting geolocated to Tel Aviv, Israel. DNSSEC appears to be unsigned, which is not uncommon but does mean DNS responses do not benefit from that additional integrity layer.
The visible page metadata suggests a basic Create React App deployment, and the discovered resources were limited to standard static assets such as a manifest, stylesheet, image, and JavaScript bundle. No malicious files or flagged outbound links were identified in the provided file-level scan, but the larger concern here appears to be potential phishing content and brand imitation rather than exploit code.
Share your experience with this website. Was it safe? Did you encounter any issues?