entrysuites[.]wixstudio[.]com
“Official Trezor™ Suite® — Desktop & Web App for Hardware® Wallets”
Збережене спостереження
Зафіксована відмінність заголовків
Зведення доказів
This domain is flagged for brand impersonation targeting users of a hardware wallet management platform. Analysis indicates the site masquerades as the official web application for managing cryptocurrency hardware wallets, specifically displaying the page title 'Official Trezor™ Suite® — Desktop & Web App for Hardware® Wallets.' Such impersonation typically aims to harvest sensitive credentials, recovery phrases, or private keys under the guise of legitimate wallet software, exposing victims to immediate asset theft and long-term account compromise. Infrastructure analysis reveals concrete indicators of malicious activity. The domain is registered through GoDaddy.com, LLC and resolves to the IP address 34.144.206.118, hosted on infrastructure utilizing Google Cloud and Google Cloud CDN. It appears on one security blocklist and is flagged by 11 out of 95 security vendors on VirusTotal. The SSL certificate is issued by Let's Encrypt, a common choice for both legitimate and fraudulent sites. Technologies detected include Wix as the hosting platform, React for frontend development, and HTTP/3 for network communication, which align with patterns observed in other impersonation campaigns. Users who visited this domain should take immediate corrective actions. Any credentials, recovery phrases, or private keys entered on the site must be considered compromised and should be revoked or migrated to new, secure wallets. Affected systems should undergo a full malware scan to detect potential secondary infections, such as keyloggers or clipboard hijackers, which are frequently deployed in cryptocurrency theft schemes. It is recommended to monitor connected accounts for unauthorized transactions and enable multi-factor authentication where available. If the domain was accessed via a link, the source of that link should be scrutinized for additional threats, and all related communications should be treated as untrustworthy.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
VirusTotal
7 → 11
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Registration: wixstudio.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології
Виявлено 5 технологій із високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of entrysuites.wixstudio.com · checked Jun 26, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога