MALICIOUS — HIGH
Перевірка домену apps-ldgercom.wixstudio.com на фішинг і безпеку
apps-ldgercom[.]
PhishDestroy identifies apps-ldgercom.wixstudio.com as a fraudulent Ledger login phishing page actively impersonating the legitimate cryptocurrency wallet service.
- VirusTotal
- 0/91
- Blocklists
- No stored match
- Доступність
- Контент недоступний · HTTP 404
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
apps-ldgercom.wixstudio.com — Контент недоступний (HTTP 404). Уособлення бренду: Ledger; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 0/91; URLScan malicious verdict; PhishDestroy score 55/100. Реєстратор: GoDaddy.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
PhishDestroy identifies apps-ldgercom.wixstudio.com as a fraudulent Ledger login phishing page actively impersonating the legitimate cryptocurrency wallet service. This domain mimics the official Ledger login interface to harvest user credentials and seed phrases, posing a direct threat to cryptocurrency holders. The threat actor leverages WixStudio’s subdomain hosting to create a deceptive replica of Ledger’s authentication portal, tricking visitors into entering sensitive financial information. Security researchers have linked this domain to a broader campaign targeting Ledger users, with the ultimate goal of draining cryptocurrency assets from compromised wallets. The domain’s infrastructure is hosted on Google Cloud (IP: 34.144.206.118), further complicating takedown efforts due to the reputable hosting provider’s abuse policies. This domain exhibits multiple red flags consistent with active phishing operations. According to VirusTotal scans, the domain remains undetected by all 95 security vendors, indicating a low detection rate that allows the threat to persist unnoticed by automated defenses. The SSL certificate, issued by Let’s Encrypt, adds a veneer of legitimacy, while the WixStudio subdomain structure (apps-ldgercom.wixstudio.com) exploits the trust associated with legitimate website builders to bypass corporate email filters and user skepticism. Historical data shows this domain was recently registered, with no prior reputation, and remains unblocked by major threat intelligence feeds, increasing its potential reach among unsuspecting victims. The absence of detections highlights the need for proactive user vigilance, as traditional security tools may fail to flag this threat in time. Users who visited apps-ldgercom.wixstudio.com should immediately assume their credentials or seed phrases may have been compromised and take urgent action to secure their assets. First, revoke any permissions granted to the suspicious domain and transfer remaining cryptocurrency assets to a new, secure wallet. Next, enable two-factor authentication (2FA) on all related accounts, including email and cryptocurrency exchanges, and consider using hardware wallets for enhanced security. Finally, scan all devices used to access the phishing page for malware, as threat actors often deploy keyloggers or remote access tools following credential theft. Report the incident to Ledger’s official support channels and local cybercrime authorities to aid in takedown efforts. Proactive monitoring of financial accounts and cryptocurrency transactions is critical to mitigate potential losses from this phishing campaign.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Обсяг даних12 recorded checks
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: wixstudio.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 5 identified
Wix provides cloud-based web development services, allowing users to create HTML5 websites and mobile sites.
www.wix.com 100% впевненостіReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% впевненостіCloud CDN uses Google's global edge network to serve content closer to users.
cloud.google.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of apps-ldgercom.wixstudio.com · checked Apr 28, 2026
Аналіз конфігурації сайту
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.