auth11-ledger.com
Appeared in the .com zone on Wednesday, September 9, 2026; by the end of that day the census found active website. Full domain report
Signals, not verdicts. A domain appears here because heuristics matched its name, its infrastructure or the page it served on its first day. Where a model has looked at it, that is shown as an opinion with a confidence, not as a finding. Nothing on this page says a site is malicious. Read the evidence and decide for yourself.
Own one of these names and think the listing is wrong? Tell us and a person will look.
What matched
Model opinions
auth11-ledger.com combines the Ledger hardware-wallet brand with an 'auth' prefix and a sequence digit — the shape of an enumerated phishing campaign (auth1..auth11-ledger) — while currently serving only a bare nginx/PHP placeholder with no form or links, so it is a brand-squat staged for deception rather than a live phish yet.
The domain auth11-ledger.com combines 'auth' (authentication) with the Ledger brand name, a known target of phishing attacks. The page is currently a bare hosting placeholder showing only nginx/PHP info with no legitimate content, but the domain structure and 'auth' prefix suggest preparation for a credential-capture attack impersonating Ledger's authentication portal. The pattern matches phishing campaign setup: brand+auth+digits in the name, active hosting, no legitimate business purpose evide
A model looked at the screenshot and page text and wrote what it thought. It can be wrong, and it is not a finding.
What the page looked like on Wednesday, September 9, 2026

Same data as JSON: /api/zone/domain/auth11-ledger.com. This page is not indexed by search engines and does not link to the site it describes.