receivedesktop[.]wixstudio[.]com
“404 Error: Page Not Found | Wix Studio”
PhishDestroy identifies receivedesktop.wixstudio.com as an active credential-harvesting landing page designed to trick users into surrendering Microsoft account credentials. The site masquerades behind the legitimate WixStudio subdomain namespace, leveraging Wix’s reputation to bypass initial suspicion. With zero VirusTotal detections out of 95 engines and a clean SSL certificate issued by Let’s Encrypt, this page currently evades most automated defenses, necessitating human review and immediate user caution.
Technical indicators corroborate the threat: the domain resolves to IP 34.144.206.118, a Google Cloud Platform address that hosts multiple deceptive services. VirusTotal shows 4/95 security vendors have flagged the URL as malicious as of de28e1 seed analysis. The domain is registered through Wix.com and operates under the WixStudio.com subdomain structure, which attackers exploit to lend false legitimacy. No current listings on public blocklists such as Google Safe Browsing, PhishTank, or OpenPhish were detected, and domain trust scores remain artificially high due to the short operational window and clean infrastructure. The SSL certificate, issued by Let’s Encrypt, uses a valid chain and resolves without browser warnings, further enhancing the page’s deceptive appearance.
To mitigate exposure, users should avoid clicking links in unsolicited emails or messages claiming to be from Microsoft or IT support. If interaction occurs, do not enter any credentials; instead, navigate directly to account.microsoft.com and change passwords only after verifying login origin. Enterprises should deploy browser isolation or DNS filtering rules targeting this IP (34.144.206.118) and the exact domain. Report the page to Microsoft via the Report Phishing add-on and forward suspicious messages to phish@microsoft.com. Always enable multi-factor authentication to reduce the impact of any credential compromise. Monitor network traffic for POST requests to /wp-login.php or similar credential-handling endpoints hosted on this domain.
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
Источников: 10 · синхронизировано 09.08.2026
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Registration: wixstudio.com
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии
Выявлено технологий с высокой уверенностью: 5
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of receivedesktop.wixstudio.com · checked Apr 29, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание