desktopstarted[.]wixstudio[.]com
Перевірка домену desktopstarted.wixstudio.com на фішинг і безпеку
“Ledger Live®® Desktop — Getting Started | Official Ledger Wallet”
desktopstarted.wixstudio.com — Контент недоступний (HTTP 404). Уособлення бренду: Ledger; Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 3/94 (Cluster25, CRDF, Gridinsoft); URLQuery 1 alert; URLScan malicious verdict; PhishDestroy score 65/100. Реєстратор: GoDaddy.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, desktopstarted.wixstudio.com, is confirmed as part of a credential theft operation. Analysis indicates the site employs deceptive landing pages designed to harvest user login credentials, likely targeting corporate or personal accounts. No direct brand impersonation or cryptocurrency drainer kit signatures were identified, but the infrastructure aligns with credential harvesting tactics observed in recent campaigns. The domain lacks overt branding, suggesting a generic or opportunistic approach rather than a targeted impersonation of a specific entity. Infrastructure analysis reveals the following technical indicators: the domain is flagged by 13 out of 95 security vendors on VirusTotal, indicating moderate detection coverage. It was registered on April 9, 2026, through GoDaddy.com, LLC, and resolves to the IP address 34.144.206.118. The domain appears on a single security blocklist and utilizes a Let's Encrypt SSL certificate, a common choice for both legitimate and malicious sites due to its free availability. No Google Safe Browsing (GSB) flags were noted at the time of analysis, though this may reflect a lag in detection rather than absence of malicious activity. The domain is currently offline, reducing immediate risk to end users. However, the infrastructure remains registered and could be reactivated or repurposed for future campaigns. The use of a Wix Studio subdomain suggests the threat actor exploited a legitimate platform to host malicious content, complicating takedown efforts. Users who may have interacted with the site are advised to reset credentials for any accounts accessed during the exposure window, particularly if multi-factor authentication was not enabled. Organizations should monitor for unusual authentication attempts originating from the associated IP address and consider blocking the domain at the network level as a precautionary measure.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | desktopstarted.wixstudio.com |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: wixstudio.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of desktopstarted.wixstudio.com · checked Jun 26, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога