login-ledgger-load-io-queue.vercel[.]app
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of login-ledgger-load-io-queue.vercel[.]app
This website appears to present itself as a Ledger-related support or device-selection page, using the title "Ledger Live" and imagery associated with Ledger hardware wallets such as Ledger Stax, Ledger Flex, Ledger Nano S Plus, and Ledger Nano X. Based on the page layout and branding shown in the screenshot, it seems designed to resemble an official cryptocurrency wallet support or onboarding interface.
However, the domain itself is a Vercel subdomain, not an official brand-owned web domain, and its naming pattern includes a misspelled brand reference ("ledgger") combined with generic technical-looking words. That combination may indicate a temporary hosted page intended to imitate a legitimate cryptocurrency service rather than an independently operated business website.
No clear evidence in the provided scan identifies the actual operator of this page. Based on the visible content and classification data, the most fitting category is phishing, likely targeting users of Ledger cryptocurrency products.
Safety Assessment for login-ledgger-load-io-queue.vercel[.]app
The scan results show substantial concern at the time of this scan. The URL was flagged by 16 out of 92 security engines, and multiple web-classification sources categorized it as phishing. In addition, the page visually resembles Ledger branding while being hosted on a third-party subdomain, and the domain string closely imitates the Ledger name with an altered spelling. That kind of resemblance may indicate a look-alike page intended to capture wallet-related information from visitors.
Although the malware file scan did not identify malicious files and several blacklist databases were clean at the time of review, those signals do not outweigh the stronger phishing indicators here. Phishing pages often contain little or no malware payload and can still be harmful by attempting to collect credentials, recovery phrases, or wallet details. The very low trust score, lack of Tranco ranking, and brand-like presentation on a non-official domain further increase concern.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site is hosted on Vercel infrastructure and resolves to IP address 216.198.79.195 in the United States. It uses a valid SSL/TLS certificate issued by a mainstream certificate authority, with expiry listed as 2026-07-27. The presence of HTTPS indicates encrypted transport, but this should not be interpreted as proof of legitimacy. DNSSEC appears to be unsigned.
From a technical standpoint, the page is relatively lightweight and references common third-party assets such as a CDN-hosted Bootstrap stylesheet, icon libraries, and an embedded chat widget. No flagged files or iframes were reported in the provided malware scan. The main technical concern is not server-side malware but the apparent use of a hosted subdomain and brand-mimicking page structure that may support phishing activity.
Share your experience with this website. Was it safe? Did you encounter any issues?