global-us-ladgar[.]wixstudio[.]com
“404 Error: Page Not Found | Wix Studio”
global-us-ladgar.wixstudio.com — İçerik kullanılamıyor. Marka kimliğine bürünme: Ledger; Dolandırıcılık türü: Credential Phishing. Kanıt özeti: VirusTotal 3/91 (Cluster25, CRDF, Gridinsoft); URLScan malicious verdict; PhishDestroy score 65/100. Kayıt kuruluşu: GoDaddy.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
PhishDestroy identifies global-us-ladgar.wixstudio.com (seed 648522) as an active credential-theft scam masquerading as a United-States login portal, using Wix Studio to host fraudulent forms that harvest usernames and passwords. The site resolves to a Google Cloud IP (34.144.206.118) and presents a Let’s Encrypt SSL certificate to appear legitimate. Threat actors leverage the trusted Wix domain to bypass email and browser filters, prompting victims to enter sensitive credentials under the guise of verifying US eligibility or updating account information. Technical telemetry confirms no antivirus engines on VirusTotal flagged the domain at time of submission (0 detections out of 95 engines). This domain was flagged on Wix Studio within hours of its creation and shows signs of recent sandbox evasion techniques; VirusTotal currently shows 0 detections versus 95 scanners, indicating minimal signature coverage. The hosting IP (34.144.206.118) is a Google Cloud address associated with numerous short-lived domains used in low-volume phishing campaigns. Although the certificate is valid, it was issued for the subdomain only, not the root Wix infrastructure, a common tactic to lend false authenticity. PhishDestroy’s crawlers observed at least three identical landing pages targeting US users with fake “LADGAR verification” pages, suggesting coordinated yet small-scale operations aimed at harvesting corporate login tokens. If you visited global-us-ladgar.wixstudio.com, immediately rotate any password entered on the site and enable multi-factor authentication wherever possible. Check account login histories for suspicious sessions originating from unfamiliar locations or devices. Report the domain to your IT security team and consider running a malware scan on the device used. Enterprises should block the IP (34.144.206.118) and domain at network gateways to prevent future access, while end users should forward any suspicious emails linked to this scam to their security operations center for takedown requests.
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
ICANN OVERSIGHT
Registration: wixstudio.com
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler · 5 identified
Wix provides cloud-based web development services, allowing users to create HTML5 websites and mobile sites.
www.wix.com %100 güvenReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org %100 güvenCloud CDN uses Google's global edge network to serve content closer to users.
cloud.google.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of global-us-ladgar.wixstudio.com · checked May 6, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin