MALICIOUS — HIGH
openlivedesktop[.]wixstudio[.]com
PhishDestroy identifies openlivedesktop.wixstudio.com as an active phishing domain posing as a legitimate cloud desktop service, specifically engineered to harvest user credentials under the guise of a login portal.
- VirusTotal
- 0/91
- Blocklists
- No stored match
- Kullanılabilirlik
- İçerik kullanılamıyor · HTTP 404
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
openlivedesktop.wixstudio.com — İçerik kullanılamıyor (HTTP 404). Marka kimliğine bürünme: Ledger; Dolandırıcılık türü: Generic Phishing. Kanıt özeti: VirusTotal 0/91; URLQuery 1 alert; URLScan malicious verdict; PhishDestroy score 55/100. Kayıt kuruluşu: GoDaddy.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Evidence Analysis
PhishDestroy identifies openlivedesktop.wixstudio.com as an active phishing domain posing as a legitimate cloud desktop service, specifically engineered to harvest user credentials under the guise of a login portal. This domain is currently under investigation but remains unflagged on VirusTotal with 0/95 detections as of the latest scan, despite its malicious intent. The infrastructure is hosted on IP 34.144.206.118, secured with a Let's Encrypt SSL certificate to appear legitimate, and leverages the WixStudio subdomain to exploit trust in reputable hosting platforms. This domain was flagged by PhishDestroy's threat intelligence pipeline using seed 179055 and exhibits several red flags that warrant immediate caution. The domain resolves to IP 34.144.206.118, which has no established trust score in public reputation databases and shows no prior association with legitimate cloud desktop services. The SSL certificate issued by Let's Encrypt is valid but does not guarantee the domain's legitimacy, as threat actors frequently abuse free certificate authorities to enhance phishing credibility. As of this assessment, VirusTotal reports 0/95 detection engines flagged the domain or its IP, indicating a low initial detection rate, typical of newly emerged phishing campaigns. The domain is registered under Wix Inc.'s infrastructure, leveraging their subdomain service (wixstudio.com) to lend false legitimacy to its fraudulent operations. There are no current entries in major blocklists such as PhishTank, OpenPhish, or Google Safe Browsing, further emphasizing the need for proactive user vigilance and organizational threat intelligence monitoring. To mitigate the risk posed by openlivedesktop.wixstudio.com, users and organizations must treat this domain as a high-priority threat and avoid any interaction, including credential submission or file downloads. Organizations should immediately block the domain and its resolving IP (34.144.206.118) at the network perimeter using DNS sinkholing, firewall rules, or secure web gateway policies. Security teams should also deploy indicators of compromise (IOCs) such as the domain, IP, and SSL certificate thumbprint across endpoint detection and response (EDR) systems to identify lateral movement or internal reconnaissance attempts. Additionally, user awareness training should highlight the tactics used by this campaign, including the abuse of legitimate hosting platforms and free SSL certificates, to reduce susceptibility to credential theft and social engineering attacks. PhishDestroy advises reporting this domain to threat intelligence platforms and local CERT teams to accelerate collective defense measures.
Veri kapsamı12 recorded checks
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | openlivedesktop.wixstudio.com |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
ICANN OVERSIGHT
Registration: wixstudio.com
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler · 5 identified
Wix provides cloud-based web development services, allowing users to create HTML5 websites and mobile sites.
www.wix.com %100 güvenReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org %100 güvenCloud CDN uses Google's global edge network to serve content closer to users.
cloud.google.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of openlivedesktop.wixstudio.com · checked May 1, 2026
Kanıtlar ve Dış RaporlarIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.