eng-live-desktop[.]wixstudio[.]com
“Ledger® Live: Desktop® — Getting Started”
Riepilogo delle prove
PhishDestroy identifies eng-live-desktop.wixstudio.com as an active crypto drainer site masquerading as a legitimate Live Desktop portal. Its goal is to trick visitors into connecting cryptocurrency wallets or entering seed phrases so attackers can silently drain funds. The domain uses a WixStudio subdomain (wixstudio.com) to appear professional, yet it has no affiliation with any legitimate desktop service provider. At the time of analysis, the site resolved to IP 34.144.206.118 and served an SSL certificate issued by Let’s Encrypt, likely to reassure visitors that “https” means safety. Despite these deceptive touches, VirusTotal currently shows zero detections across 95 scanning engines, indicating that mainstream security tools have not yet blacklisted the domain. This domain was flagged on seed 1d0987 and added to the PhishDestroy database for further investigation. Technical indicators reveal a recent creation date and hosting within a Google Cloud infrastructure range commonly abused for short-lived phishing campaigns. The registrar is Cloudflare, Inc., which is not inherently malicious but is frequently chosen by threat actors for its privacy protections and fast domain provisioning. The site’s landing page mimics a generic authentication or wallet-connect interface, tricking users into signing malicious transactions that authorize fund transfers without additional prompts. Even though the SSL certificate appears valid, it does not guarantee the site’s legitimacy—certificate issuance is automated and does not involve human review of content. If you visited eng-live-desktop.wixstudio.com, immediately disconnect your wallet or revoke any connected permissions via your wallet’s “Connected Apps” or “Authorized Sites” settings. Do not interact further with the page, and clear your browser cache and cookies for that domain. Report the incident to your wallet provider and consider transferring remaining assets to a new wallet with a different seed phrase. Always verify domains by checking PhishDestroy or other reputable threat-intel platforms before entering sensitive information or connecting crypto wallets. If you entered a seed phrase or private key, revoke wallet access immediately and generate a new wallet with a fresh recovery phrase.
Data Coverage
Informazioni sulla sicurezza di rete
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | eng-live-desktop.wixstudio.com |
malicious | Sinkholed |
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 13/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, nomi TLS e date
ICANN OVERSIGHT
Registration: wixstudio.com
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of eng-live-desktop.wixstudio.com · checked Apr 5, 2026
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo