ledgstarted[.]wixstudio[.]com
ledgstarted.wixstudio.com için kimlik avı ve güvenlik kontrolü
“404 Error: Page Not Found | Wix Studio”
ledgstarted.wixstudio.com — İçerik kullanılamıyor (HTTP 404). Marka kimliğine bürünme: Ledger; Dolandırıcılık türü: Credential Phishing. Kanıt özeti: VirusTotal 4/91 (alphaMountain.ai, Cluster25, Gridinsoft, Webroot); URLScan malicious verdict; PhishDestroy score 65/100. Kayıt kuruluşu: GoDaddy.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Evidence Analysis
The domain ledgstarted.wixstudio.com is assessed as having an elevated risk level and is specifically identified as a fake login scam. This type of threat typically involves the creation of websites that mimic legitimate login pages to deceive users into providing sensitive information such as usernames, passwords, and financial details.
Analysis indicates that the domain was registered through GoDaddy.com, LLC on April 28, 2026. VirusTotal reports that 4 out of 95 security vendors flag this domain, suggesting a moderate level of consensus among security experts regarding its malicious nature. The domain resolves to the IP address 34.144.206.118, which is associated with Google Cloud, indicating the use of cloud infrastructure to host the phishing content. Additionally, the domain is blocked by PhishDestroy, PhishingArmy, and OISD, further corroborating its status as a threat. The SSL certificate is issued by Let's Encrypt, a common choice for phishing sites due to the ease of obtaining a certificate. The Gridinsoft trust score for this domain is 0/100, reflecting a complete lack of trust in its legitimacy. The current status of the domain is offline, and the page title displays a '404 Error: Page Not Found | Wix Studio,' which may be an attempt to avoid detection or a result of the domain being taken down.
To mitigate the risk posed by this fake login scam, users should avoid visiting the domain and refrain from entering any personal or sensitive information on any pages associated with it. Security teams and network administrators should consider adding this domain to their firewall and DNS blacklists to prevent access from within their networks. Additionally, monitoring for any related subdomains or IP addresses linked to 34.144.206.118 can help in identifying and blocking further attempts by the threat actors. Conducting regular security awareness training to educate employees about the signs of phishing attacks and the importance of verifying URLs and SSL certificates is also recommended.
Veri kapsamı12 recorded checks
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
ICANN OVERSIGHT
Registration: wixstudio.com
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler · 9 identified
Wix provides cloud-based web development services, allowing users to create HTML5 websites and mobile sites.
www.wix.com %100 güvenEnvoy is an open-source edge and service proxy, designed for cloud-native applications.
www.envoyproxy.io %100 güvenReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org %100 güvenRequireJS is a JavaScript library and file loader which manages the dependencies between JavaScript files and in modular programming.
requirejs.org %100 güvenLodash is a JavaScript library which provides utility functions for common programming tasks using the functional programming paradigm.
www.lodash.com %100 güvenHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org %100 güvenCloud CDN uses Google's global edge network to serve content closer to users.
cloud.google.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of ledgstarted.wixstudio.com · checked Jun 26, 2026
Kanıtlar ve Dış RaporlarIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.