ldger-live-desktop[.]wixstudio[.]com
“404 Error: Page Not Found | Wix Studio”
ldger-live-desktop.wixstudio.com — コンテンツが利用できません. ブランドの偽装: Ledger; 詐欺タイプ: Brand Impersonation. 証拠の概要: VirusTotal 4/94 (Cluster25, CRDF, Gridinsoft, Webroot); PhishDestroy score 75/100. レジストラ: GoDaddy.
元のフォレンジック記録を保持するため、下の PhishDestroy AI 詳細分析は英語のままです。
This domain mimics the official Ledger Live desktop interface to trick users into entering their recovery phrases or private keys, enabling direct theft of cryptocurrency funds. The attacker uses the WixStudio platform to host a visually identical replica of the legitimate Ledger Live interface, targeting users who may overlook subtle URL differences or SSL indicators. Common tactics include fake update prompts, urgency messages (e.g., 'Your wallet is compromised'), and spoofed support chat windows to extract credentials. Users who enter their 24-word recovery phrase or private keys risk immediate loss of funds, as these are the master keys to their wallets. The domain leverages cloud hosting (IP 34.144.206.118) with a Let's Encrypt SSL certificate to appear legitimate and avoid initial suspicion.
PhishDestroy identifies this site as a confirmed credential theft phishing page, with VirusTotal reporting only 1 out of 95 security vendors detecting it at the time of analysis. The domain was likely registered recently, exploiting the trust users place in Ledger’s brand reputation. Registrar information indicates use of a privacy-protected service to obscure ownership details, a common tactic among phishing operators. The low detection rate (1.05%) highlights the stealthiness of this campaign, which relies on social engineering rather than overt malware. Technical indicators such as the mismatched domain (wixstudio.com vs ledger-live.com) and the IP geolocation (hosted on Google Cloud in the US) further confirm its malicious nature.
If you visited this site, immediately disconnect from the internet to prevent any data exfiltration. Never enter your Ledger recovery phrase, seed phrase, or private keys into any website or app outside the official Ledger Live application. Scan your device with reputable antivirus software like Malwarebytes or Windows Defender to check for keyloggers or spyware. Revoke any session tokens or API keys exposed during the visit via your Ledger account dashboard. If you entered credentials, transfer your funds to a new wallet immediately using a clean, offline device. Report the domain to Google Safe Browsing (safebrowsing.google.com/report_phish) and Ledger’s official support channels. Always verify URLs manually (ledger.com/live) and enable Ledger’s 'Passphrase' feature for additional security.
ネットワークセキュリティインテリジェンス
脅威対応 Pipeline
公開ブロックリスト登録状況
保存済みキャプチャ
ドメイン・インテリジェンス
技術的な詳細DNS、SSL SAN、タイムスタンプ
ICANN OVERSIGHT
Registration: wixstudio.com
認定と RAA の背景
認定と RAA の背景
Registrar accreditation and DNS abuse obligations
For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
使用技術 · 5 identified
Website builder platform with hosted publishing — low barrier to entry makes it a common phishing hosting.
JavaScript library for building user interfaces with component-based architecture.
Suite of cloud computing services running on Google infrastructure.
Content delivery network built on Google global edge infrastructure.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotalによる分析
サイトパフォーマンス分析
Google PageSpeed Insights — mobile performance audit of ldger-live-desktop.wixstudio.com · checked Apr 15, 2026
証拠および外部報告書
このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください