now-bridge-us[.]wixstudio[.]com
“404 Error: Page Not Found | Wix Studio”
now-bridge-us.wixstudio.com — Conteúdo indisponível. Representação da marca: Trezor; Tipo de golpe: Credential Phishing. Resumo das evidências: VirusTotal 0/91; URLScan malicious verdict; PhishDestroy score 55/100. Registrador: GoDaddy.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
PhishDestroy identifies now-bridge-us.wixstudio.com as an active phishing domain impersonating LinkedIn login pages to harvest user credentials and session tokens. This domain employs a WixStudio hosting platform to mimic official LinkedIn authentication workflows, tricking victims into entering sensitive information under the guise of legitimate account access. The threat level is currently marked as 'under_investigation' due to evolving behavior patterns and low initial detection rates, but its active operation and deceptive tactics warrant immediate caution for users encountering this domain. This domain resolves to IP address 34.144.206.118 and utilizes a Let's Encrypt SSL certificate to appear legitimate. VirusTotal currently shows 0 out of 95 security vendors flagging this domain, indicating it has evaded automated detection mechanisms. The domain is hosted on WixStudio's platform, which has been increasingly abused by threat actors to host phishing content due to its legitimate appearance and free hosting options. The domain's infrastructure lacks any known presence on major blocklists at this time, and no historical trust scores are available for the IP address or domain. The SSL certificate may be valid but is likely misused for phishing purposes, as legitimate LinkedIn domains operate under different infrastructure. Mitigation against this specific threat requires immediate verification of any links claiming to direct to LinkedIn before entering credentials. Users should navigate directly to LinkedIn's official domain (linkedin.com) rather than clicking embedded links, especially in unsolicited messages. Organizations should configure email security gateways to block domains mimicking LinkedIn or other professional networks, and consider implementing multi-factor authentication to reduce the impact of credential theft. Security teams should monitor for any new domains hosted on 34.144.206.118 or similar IPs and report findings to threat intelligence platforms to improve collective detection. Given the current lack of detections despite active phishing operations, manual reporting and vigilance are critical to prevent further victimization.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Registration: wixstudio.com
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologias · 6 identified
Wix provides cloud-based web development services, allowing users to create HTML5 websites and mobile sites.
www.wix.com 100% de confiançaEnvoy is an open-source edge and service proxy, designed for cloud-native applications.
www.envoyproxy.io 100% de confiançaReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% de confiançaCloud CDN uses Google's global edge network to serve content closer to users.
cloud.google.com 100% de confiançaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% de confiançaAnálise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of now-bridge-us.wixstudio.com · checked May 2, 2026
Análise da configuração do site
Evidências e relatórios externos
“The captured page presents itself as an official Trezor bridge while hosted at now-bridge-us.wixstudio.com, which is not an authorized Trezor domain. The branding, title, and product-download framing are deceptive and likely intended to mislead users into believing the site is affiliated with Trezor. DNS resolves the host to 34.144.206.118 with a CNAME to username.wix.com, and WHOIS shows a long-lived GoDaddy registration, indicating active hosted infrastructure rather than a benign parked page.”
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo