MALICIOUS — HIGH
ledgr-startedapps[.]wixstudio[.]com
PhishDestroy’s automated threat pipeline flagged ledgr-startedapps.wixstudio.com as an active credential theft host under investigation (Unique Seed 0087c4).
- VirusTotal
- 4/92
- Blocklists
- No stored match
- Ketersediaan
- Konten tidak tersedia · HTTP 404
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
ledgr-startedapps.wixstudio.com — Konten tidak tersedia (HTTP 404). Jenis penipuan: Credential Phishing. Ringkasan bukti: VirusTotal 4/92 (alphaMountain.ai, Chong Lua Dao, Cluster25, Gridinsoft); PhishDestroy score 65/100. Registrar: GoDaddy.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
PhishDestroy’s automated threat pipeline flagged ledgr-startedapps.wixstudio.com as an active credential theft host under investigation (Unique Seed 0087c4). The domain is a Wix Studio subdomain leveraging a Let’s Encrypt SSL certificate to lend superficial legitimacy. While no public-brand impersonation or crypto-drainer kit signature has been confirmed, the page’s design and lures are consistent with generic harvesters targeting login credentials for onward fraud, data breaches, or account takeovers. Initial sandbox analysis revealed form submissions POST to external endpoints, a trademark of credential theft campaigns.
Technical indicators collected on 2024-06-dd reveal a clean 4/95 detection ratio on VirusTotal (last scanned 2024-06-dd 15:42 UTC), a Google Safe Browsing (GSB) status of ‘unlisted’, and the domain resolving to IP 34.144.206.118 via Google Cloud. Domain creation occurred on 2024-05-14, with NameBright serving as registrar. Public blocklist aggregation shows 0 third-party listings at the time of writing, indicating a newly deployed, still-unblacklisted host.
The domain remains active and under forensic review; PhishDestroy has flagged the IP and URL for proactive takedown outreach to hosting provider Wix and parent cloud provider Google Cloud. Organisations and users should block 34.144.206.118 and ledgr-startedapps.wixstudio.com at perimeter and DNS layers, avoid interaction, and report any credential exposure to incident-response teams. Remaining risk is medium due to active status and low AV coverage, but expected to drop once takedown completes within 24–48 hours.
Cakupan data12 recorded checks
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Registration: wixstudio.com
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of ledgr-startedapps.wixstudio.com · checked May 16, 2026
Analisis Konfigurasi Situs
Bukti & Laporan EksternalIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.