ledgarlive[.]wixstudio[.]com
Verifica phishing e sicurezza per ledgarlive.wixstudio.com
“Ledger Live Login™ – Safe Wallet Access®”
ledgarlive.wixstudio.com — Contenuto non disponibile (HTTP 404). Simulazione del marchio: Ledger; Tipo di truffa: Credential Phishing. Riepilogo delle prove: VirusTotal 3/91 (alphaMountain.ai, ESET, Forcepoint ThreatSeeker); URLQuery 1 alert; URLScan malicious verdict; PhishDestroy score 65/100. Registrar: GoDaddy.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Analysis
Analysis of the domain ledgarlive.wixstudio.com indicates it was actively impersonating Ledger, a hardware cryptocurrency wallet provider, as part of a credential phishing campaign. The domain, hosted on Wix Studio's infrastructure, presented itself with the page title 'Ledger Live Login™ – Safe Wallet Access®,' directly mimicking Ledger's official login portal. As of July 24, 2026, the domain has been taken offline, returning an HTTP 404 status, though infrastructure analysis reveals it previously resolved to 34.144.206.118, an IP address assigned to Google LLC (AS396982) in the United States. The SSL certificate was issued by Let's Encrypt (R13), a common choice for both legitimate and malicious domains due to its free and automated issuance process.
The domain was registered through GoDaddy.com, LLC on December 17, 2016, though this long registration period does not inherently indicate legitimacy, as older domains are frequently repurposed for malicious activity. Nameservers are hosted by NS1 (dns1.p08.nsone.net through dns4.p08.nsone.net), a provider used by both legitimate and fraudulent sites. Detection data shows the domain appeared on one security blocklist, and three of 91 security vendors on VirusTotal flagged it as malicious, suggesting moderate but not universal detection at the time of scanning. While the domain is now offline, its infrastructure remains a potential vector for future abuse.
Defenders should monitor for re-emergence under the same or similar domains, particularly those leveraging Wix Studio or Google Cloud IP ranges. Organizations using Ledger products should alert users to verify domain authenticity before entering credentials and consider implementing additional authentication measures for wallet access. The absence of widespread blocklist coverage highlights the need for proactive monitoring of newly registered or repurposed domains impersonating cryptocurrency services.
Copertura dei dati12 recorded checks
Informazioni sulla sicurezza di rete
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | ledgarlive.wixstudio.com |
malicious | Sinkholed |
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Registration: wixstudio.com
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisi di VirusTotal
Analisi della configurazione del sito
Dati e relazioni esterneIndependent lookups and source reports
PD-20260621-961D78 Recipient: abuse@godaddy.com Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.