proxy-bridge[.]wixstudio[.]com
“404 Error: Page Not Found | Wix Studio”
PhishDestroy identifies proxy-bridge.wixstudio.com as an active crypto drainer impersonation domain, hosted on Wix Studio and designed to deceive users into connecting crypto wallets under the guise of proxy-bridge services. The threat actor leverages a generic landing page structure commonly associated with clipboard-modifying drainer kits, which silently replace wallet addresses pasted by victims with those controlled by the attacker. While the domain does not explicitly brand a major exchange or wallet provider, the term 'proxy-bridge' suggests a connection to proxy services in crypto ecosystems, possibly mimicking bridge protocols or routing tools to gain user trust. The domain’s use of a Wix Studio subdomain indicates a low-cost, high-availability hosting strategy typical of opportunistic phishing campaigns seeking short-lived operational windows. This domain resolves to IP address 34.144.206.118, a Google Cloud Platform (GCP) instance, and is secured with a Let’s Encrypt SSL certificate, likely to evade browser warnings and appear legitimate. According to VirusTotal, the domain currently shows 0 detections across 95 security vendors as of the latest scan. The domain is registered through Wix.com, leveraging their studio platform for rapid deployment. The creation date is under investigation, but the domain remains active and accessible. Google Safe Browsing (GSB) status is currently unknown, and the domain has not yet been widely blocklisted, indicating a newly emerged or stealthily operated threat. These technical indicators suggest a campaign in its early operational phase, prioritizing speed and evasion over sustained infrastructure. The domain is currently flagged as 'active' with a risk status of 'under_investigation' by PhishDestroy’s monitoring systems. Immediate response actions include categorization as a high-priority crypto drainer threat and the addition of the domain and its resolving IP to internal and partner blocklists. Users are strongly advised to avoid interacting with this domain, verify any 'proxy-bridge' related services through official channels, and inspect wallet transaction histories for unauthorized transfers. Remaining risk is assessed as moderate due to the domain’s current low detection rate and lack of widespread blocking, but the transient nature of Wix-hosted and cloud-resolved phishing domains typically results in rapid takedown once identified. Continuous monitoring is essential to prevent wallet compromise and financial loss.
Erkenntnisse zur Netzwerksicherheit
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 Quellen · synchronisiert am 09.08.2026
Community-Erkenntnisse
1 Community-Meldungen
KategoriePHISHING
The PhishFort Detection System has flagged this as a domain threat, classified as other. Associated tags: mx records, subdomain. Threat detected at 2026-05-01T07:31:55.708Z.
Gespeicherte Aufnahme
Domain-Intelligenz
Technische DetailsDNS, SSL-SANs, Zeitstempel
ICANN OVERSIGHT
Registration: wixstudio.com
Akkreditierung und RAA-Kontext
Akkreditierung und RAA-Kontext
Registrar accreditation and DNS abuse obligations
For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologien
5 Technologien mit hoher Konfidenz erkannt
VirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of proxy-bridge.wixstudio.com · checked Apr 30, 2026
Analyse der Website-Konfiguration
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt