Перейти до звіту про безпеку
Checked 09.08.2026 Ref DF9A4249

MALICIOUS — HIGH

ldgrcom.wixstudio.com Detected — Fake Login Stealer

ldgrcom[.]wixstudio[.]com

PhishDestroy identifies ldgrcom.wixstudio.com as an active phishing domain engineered to harvest user credentials under false pretenses.

65/100 evidence score · High
VirusTotal
4/92
Blocklists
No stored match
Доступність
Контент недоступний · HTTP 404
Report / Add Evidence Appeal this listing
2026-05-11 07:41 UTCКонтент недоступний · HTTP 404

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Цей домен було позначено як шкідливий
Системи безпеки повідомляють про виявлення: 4. Будьте дуже обережні — не вводьте облікові дані чи особисту інформацію.
Jump to section
Огляд звіту

ldgrcom.wixstudio.com — Контент недоступний (HTTP 404). Уособлення бренду: Ledger; Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 4/92 (alphaMountain.ai, Cluster25, CRDF, Gridinsoft); URLScan malicious verdict; PhishDestroy score 65/100. Реєстратор: GoDaddy.

Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.

Evidence Analysis

Ref DF9A4249

PhishDestroy identifies ldgrcom.wixstudio.com as an active phishing domain engineered to harvest user credentials under false pretenses. This site masquerades as a legitimate login portal, likely targeting unsuspecting users by exploiting trust in well-known service interfaces. The inclusion of a WixStudio subdomain suggests an attempt to appear credible at first glance, leveraging the reputation of a legitimate hosting platform to obscure malicious intent. Seed indicator df9a42 flags this infrastructure as high-risk for credential theft and potential follow-on attacks. This domain resolves to a Google Cloud IP address (34.144.206.118) and utilizes a valid Let’s Encrypt SSL certificate to enhance its authenticity. Despite its current clean slate on VirusTotal (0 detections out of 95 engines as of latest scan), this domain remains untrusted due to active phishing behaviors. While the creation date and registrar details are not publicly disclosed, the absence of detections does not equate to safety—this site continues to operate and evolve its tactics. Independent blocklist checks show zero formal listings, illustrating how threat actors exploit gaps in detection coverage by rotating infrastructure and domains rapidly. Users who have visited ldgrcom.wixstudio.com should immediately reset passwords for any accounts accessible via this domain or similar login interfaces. Do not re-enter credentials on this site under any circumstances. Enable multi-factor authentication (MFA) on all critical accounts and monitor for signs of compromise such as unauthorized transactions or credential reuse. Report the domain to PhishDestroy using the unique seed df9a42 to help improve community defense. Avoid clicking links from unsolicited messages referencing this domain, as it is actively used in social engineering campaigns. When in doubt, access services directly through official URLs and verify SSL certificates thoroughly.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
4 det.
DNS Security
1/14
URLScan
URLScan
Сертифікат TLS
Let's Encrypt
Вік
3 mo
Зафіксований статус
Контент недоступний 404
PhishDestroy
DestroyList
У списку
Обсяг даних12 recorded checks
VirusTotal 4 / 92 URLQuery checked — no detections recorded PhishStats checked — no match recorded OTX no community references CF Radar scan completed URLScan capture збережений звіт URLScan verdict malicious Блокування DNS 1/14 TLS valid certificate, 79d WHOIS 3 mo old Знімок екрана 3 captures · 3 sources Ланцюжок перенаправлень не досліджено
Розвіддані з мережевої безпеки
DNS Provider Blocks 1 / 14
Brand Wix

Процес реагування на загрози Pipeline

Відкриття
Checks
Reports
Доступність
15/16
Загроза виявлена
ldgrcom.wixstudio.com виявлено та додано до черги для повного аналізу
11.05.2026
URLScan.io Capture
Stored URLScan report with capture artifacts
URLScan Verdict
URLScan returned a malicious verdict · score 100
29.07.2026
Cloudflare Radar Report
A stored Cloudflare Radar report is available. The report link alone is not a malicious verdict and does not prove that every network field was captured.
Web Archive
Preserved in Wayback Machine — historical evidence archived
12.05.2026
VirusTotal
4/92 recorded on VirusTotal
18.07.2026
Google Safe Browsing
11.05.2026
DNS Security Blocks
Blocked by 1 of 14 checked DNS providers: Brand wix
robots.txt: 2 paths
Found 2 disallowed/allowed paths in robots.txt — reveals site structure
08.08.2026
Brand Impersonation
Impersonation of Ledger
Forensic Evidence Collected
Stored evidence from URLScan.io, URLQuery, stored screenshot
Technical Analysis Recorded
Звіт містить збережені результати технологічного або криміналістичного аналізу.
09.08.2026
Complaint Draft Available
Жодне подання не фіксується. Ви можете створити чернетку, переглянути її та самостійно подати у відповідний орган.
Опубліковано список «DestroyList»
11.05.2026
Content Observed Unavailable
Останні збережені перевірки вказують на те, що повідомлений вміст недоступний; це не встановлює, хто або що спричинило зміну.
06.06.2026
Час до першої недоступності
Від виявлення до першого недоступного спостереження минуло 10 годин.

Статус у публічних блоклистах

Збережений знімок

Заголовок сторінки
404 Error: Page Not Found | Wix Studio
Сертифікат TLS
Valid transport encryption · Виданий Let's Encrypt · valid for 79 days

Аналітика доменів

Домен
URLScan Verdict Шкідливий score 100 Phishing brand: Ledger report ↗
Сервер / ASN Pepyaka · AS396982 Google LLC
Репутація IP abuse score 30/100 21 reports checked 13.07.2026
Registrar (base domain) GoDaddy US(US)
IP-адреса 34.144.206.118 US
ГеолокаціяUS Kansas City, US
МережаAS396982 · Google Cloud
Зворотний пошук IPviewdns.info → rapiddns.io →
Registration (base domain)wixstudio.com · Створено 11.05.2026 (90d)
Статус HTTP404 Not Found
Час до першої недоступності 10h
Що ми враховуємо Час, що минув від першого збереженого звіту про порушення до першого спостереження, що вміст був недоступний. Це не встановлює причину.
Що містить кожен звіт Збережені записи вихідних звітів можуть посилатися на докази, доступні на той час, наприклад вердикти постачальників, реєстраційні дані, деталі хостингу, класифікації або знімки екрана. Ця сторінка не визначає точного доставленого корисного навантаження, квитанції, підтвердження чи дії одержувача.
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Вперше виявлено11.05.2026
IoC Extractionscanned 01.08.20260 wallet · 0 Telegram IoCs
Submitted URLhttps://ldgrcom.wixstudio.com/getstarted
Сервери іменdns4.p08.nsone.net
TLS Fingerprint
TLS Observationvalid from 30.04.2026scanned 11.05.2026
TLS SAN Domainswixstudio.com
Favicon Hash
ICANN OVERSIGHT Registration: wixstudio.com

Акредитація та контекст RAA

Registrar accreditation and DNS abuse obligations

For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Нічого не надсилається автоматично.
Технології · 5 identified
Wix
CMS Blogs

Wix provides cloud-based web development services, allowing users to create HTML5 websites and mobile sites.

www.wix.com 100% впевненості
React
JavaScript frameworks

React is an open-source JavaScript library for building user interfaces or UI components.

reactjs.org 100% впевненості
Google Cloud
IaaS

Google Cloud is a suite of cloud computing services.

cloud.google.com 100% впевненості
Google Cloud CDN
CDN

Cloud CDN uses Google's global edge network to serve content closer to users.

cloud.google.com 100% впевненості
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org 100% впевненості
Detected via Cloudflare Radar · Wappalyzer engine
Поскаржитися на цей домен Надішліть докази та допоможіть захистити інших

Аналіз VirusTotal

4 / 92 постачальників безпеки позначили цей домен
View on VT
Last analyzed
alphaMountain.ai
Cluster25
CRDF
Gridinsoft

Архівні докази

Wayback Machine Snapshot
Для перегляду доказів доступний історичний знімок
View Archive
Аналіз продуктивності сайту

Google PageSpeed Insights — mobile performance audit of ldgrcom.wixstudio.com · checked May 11, 2026

83
Needs Work
Performance
FCP
2.59s
First Contentful Paint
LCP
4.08s
Largest Contentful Paint
CLS
0.002
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
2.59s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Аналіз конфігурації сайту
Stored observations are retained with their original collection time.
robots.txt Present · HTTP 200
/_partials* /pro-gallery-webapp/v1/galleries/*
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.

Європол
Знайдіть офіційний канал звітності для вашої країни ЄС
National police directory
Остерігайтеся шахраїв, які обіцяють повернути втрачені кошти! Злочинці можуть знову зв’язатися з жертвами, видаючи себе за слідчих, адвокатів або агентів із відновлення. Не сплачуйте авансових зборів і не діліться обліковими даними. Дізнайтеся більше про шахрайство у сфері відшкодування збитків →

Зверніться до місцевих органів влади

Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.

Довідник 97 країн
Чернетка за допомогою штучного інтелекту — деталі інциденту обробляються постачальником штучного інтелекту Перегляньте та подайте його самостійно
Вбудувати цей звітRead-only HTML widget
HTML · IFRAME

Вбудувати цей звіт

Поділіться цією інформацією про загрози на своєму веб-сайті або в блозі

embed.html
<iframe
  src="https://phishdestroy.io/uk/embed/domain/ldgrcom.wixstudio.com"
  title="PhishDestroy threat report for ldgrcom.wixstudio.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Дуже щирий лист-подяка

Генератор сатиричних чернеток

Одержувач
Контекст зборів

Це сатирична чернетка. Суми зборів є оцінками; ми не стверджуємо, що вони точно стосуються цього домену.