hompage-appstart[.]wixstudio[.]com
“404 Error: Page Not Found | Wix Studio”
証拠の概要
PhishDestroy identifies hompage-appstart.wixstudio.com as an active fake app installer phishing domain currently under investigation for medium-risk threat activity. The domain mimics legitimate software installation prompts to deceive users into downloading malicious payloads or surrendering credentials. Initial analysis reveals a Let’s Encrypt SSL certificate, which may enhance its credibility by displaying the padlock icon in browsers. Resolving to IP 34.144.206.118, the domain currently shows zero detections across 95 VirusTotal engines, suggesting it has evaded broad detection mechanisms thus far. The use of a WixStudio subdomain adds a veneer of legitimacy, potentially exploiting trust in reputable hosting platforms to lower user suspicion. This domain was flagged with a medium risk level due to its active phishing lure and low detection coverage, despite the absence of confirmed blocklist entries at the time of analysis. The hosting infrastructure (34.144.206.118) is associated with Google Cloud Platform, which may complicate takedown efforts due to the provider’s scale and rapid provisioning cycles. The SSL certificate, issued by Let’s Encrypt, provides encryption but does not validate the domain’s authenticity or ownership. While specific creation date and registrar details are not yet confirmed, the combination of a recently observed domain, low detection rate, and deceptive content strongly indicates a newly deployed phishing campaign targeting unsuspecting users seeking software updates or new applications. Mitigation for this fake app installer phishing threat requires immediate user awareness and technical countermeasures. Users should avoid downloading software from unsolicited links, especially those embedded in emails or pop-ups, and verify the authenticity of app sources through official websites or app stores. Organizations are advised to deploy DNS filtering to block access to hompage-appstart.wixstudio.com and similar deceptive domains, and to monitor outbound traffic for connections to 34.144.206.118. Additionally, security teams should inspect endpoint logs for unusual installer processes or certificate validation failures, as these may indicate successful phishing compromise. Given the low initial detection rate, proactive threat hunting is recommended to identify related infrastructure or compromised hosts before the campaign escalates.
Data Coverage
ネットワークセキュリティインテリジェンス
脅威対応 Pipeline
ブロックリストの確認範囲
監視対象の外部情報源 10 件 · 保存スナップショット 2026年8月11日
保存済みキャプチャ
ドメイン・インテリジェンス
技術詳細DNS、TLS 名、タイムスタンプ
ICANN OVERSIGHT
Registration: wixstudio.com
認定と RAA の背景
認定と RAA の背景
Registrar accreditation and DNS abuse obligations
For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
使用技術
高確信度で特定された技術:5 件
VirusTotalによる分析
サイトパフォーマンス分析
Google PageSpeed Insights — mobile performance audit of hompage-appstart.wixstudio.com · checked May 1, 2026
このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください