Перейти до звіту про безпеку
⚠️
Цей домен було позначено як шкідливий
Системи безпеки повідомляють про виявлення: 13. Будьте дуже обережні — не вводьте облікові дані чи особисту інформацію.
Безпека домену та аналіз загроз

live-appxldgre[.]wixstudio[.]com

“Official Site | Ledger Live App – The Official Wallet*”

Загрозливий вердикт Критичний 89/100 оцінка доказів
Доступність Контент недоступний Вміст був недоступний під час останнього спостереження
Виявлення VirusTotal: 13/91 Уособлення бренду: Ledger
11.06.2026 Ledger
Огляд звіту

live-appxldgre.wixstudio.com — Контент недоступний. Уособлення бренду: Ledger; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 13/91 (Criminal IP, alphaMountain.ai, BitDefender, Certego, Cluster25); URLScan malicious verdict; PhishDestroy score 89/100. Реєстратор: GoDaddy.

Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.

Зведення доказів
КРИТИЧНИЙ
Посилання
811E9165
Оцінка
89/100

This domain, live-appxldgre.wixstudio.com, poses a high-risk threat as a brand impersonation site specifically targeting Ledger, a well-known cryptocurrency hardware wallet provider. The site mimics the official Ledger Live App interface, presenting itself under the page title 'Official Site | Ledger Live App – The Official Wallet.' Users tricked into visiting may unknowingly expose sensitive credentials, recovery phrases, or private keys, leading to unauthorized access to cryptocurrency wallets and potential financial loss. The site is designed to deceive users into believing they are interacting with a legitimate Ledger service, increasing the likelihood of successful exploitation.

Analysis indicates this domain is malicious based on multiple technical indicators. VirusTotal reports that 13 out of 95 security vendors have flagged the domain as malicious. The domain was registered on June 11, 2026, through GoDaddy.com, LLC, and resolves to the IP address 34.144.206.118. It appears on three security blocklists, including PhishDestroy, PhishingArmy, and OISD. The site employs a Let's Encrypt SSL certificate and utilizes technologies such as Wix, React, Google Cloud, RequireJS, Lodash, HSTS, Google Cloud CDN, and HTTP/3. The combination of these factors, particularly the early detection by security vendors and its presence on multiple blocklists, confirms its malicious intent.

If a user has visited live-appxldgre.wixstudio.com or interacted with the site, immediate action is required to mitigate potential risks. First, disconnect the device from the internet to prevent further data transmission. Next, assume that any credentials, recovery phrases, or private keys entered on the site have been compromised. Users should immediately transfer any cryptocurrency assets from potentially exposed wallets to new, secure wallets with fresh recovery phrases. Additionally, monitor all linked accounts for unauthorized transactions and enable multi-factor authentication where possible. It is also recommended to scan the device for malware using updated security tools, as the site may have delivered additional payloads. Finally, report the incident to relevant cybersecurity authorities or the legitimate service provider to aid in tracking and mitigating the threat.

VirusTotal
VirusTotal
13 det.
URLScan
URLScan
Сертифікат TLS
Let's Encrypt
Вік
2 mo New
Зафіксований статус
Контент недоступний
PhishDestroy
DestroyList
У списку
Обсяг даних VirusTotal 13 / 91 URLQuery не перевірено PhishStats не перевірено OTX no community references CF Radar scan completed URLScan capture збережений звіт URLScan verdict malicious Блокування DNS не перевірено TLS valid certificate, 88d WHOIS 2 mo old Знімок екрана 2 captures · 2 sources Ланцюжок перенаправлень не досліджено

Процес реагування на загрози Pipeline

Відкриття
Checks
Reports
Доступність
14/15

Статус у публічних блоклистах

Збережений знімок

Заголовок сторінки
Official Site | Ledger Live App – The Official Wallet*
Сертифікат TLS
Valid transport encryption · Виданий Let's Encrypt · valid for 88 days

Аналітика доменів

Домен
URLScan Verdict Шкідливий score 100 Phishing brand: Ledger report ↗
Сервер / ASN Pepyaka · AS396982 Google LLC
Репутація IP abuse score 30/100 21 reports checked 13.07.2026
Registrar (base domain) GoDaddy US(US)
IP-адреса 34.144.206.118 US
ГеолокаціяUS Kansas City, US
МережаAS396982 · Google Cloud
Зворотний пошук IPviewdns.info → rapiddns.io →
Registration (base domain)wixstudio.com · Створено 11.06.2026 (63d · New)
Час до першої недоступності 4h
Що ми враховуємо Час, що минув від першого збереженого звіту про порушення до першого спостереження, що вміст був недоступний. Це не встановлює причину.
Що містить кожен звіт Збережені записи вихідних звітів можуть посилатися на докази, доступні на той час, наприклад вердикти постачальників, реєстраційні дані, деталі хостингу, класифікації або знімки екрана. Ця сторінка не визначає точного доставленого корисного навантаження, квитанції, підтвердження чи дії одержувача.
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Вперше виявлено11.06.2026
IoC Extractionscanned 01.08.20260 wallet · 0 Telegram IoCs
Submitted URLhttps://live-appxldgre.wixstudio.com/us-en
Сервери іменdns4.p08.nsone.net
TLS Fingerprint
TLS Observationvalid from 30.04.2026scanned 12.06.2026
TLS SAN Domainswixstudio.com
ICANN OVERSIGHT Registration: wixstudio.com

Акредитація та контекст RAA

Registrar accreditation and DNS abuse obligations

For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Нічого не надсилається автоматично.
Технології · 8 identified
Wix
CMS Blogs

Wix provides cloud-based web development services, allowing users to create HTML5 websites and mobile sites.

www.wix.com 100% впевненості
React
JavaScript frameworks

React is an open-source JavaScript library for building user interfaces or UI components.

reactjs.org 100% впевненості
Google Cloud
IaaS

Google Cloud is a suite of cloud computing services.

cloud.google.com 100% впевненості
RequireJS
JavaScript frameworks

RequireJS is a JavaScript library and file loader which manages the dependencies between JavaScript files and in modular programming.

requirejs.org 100% впевненості
Lodash
JavaScript libraries

Lodash is a JavaScript library which provides utility functions for common programming tasks using the functional programming paradigm.

www.lodash.com 100% впевненості
HSTS
Безпека

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

www.rfc-editor.org 100% впевненості
Google Cloud CDN
CDN

Cloud CDN uses Google's global edge network to serve content closer to users.

cloud.google.com 100% впевненості
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org 100% впевненості
Detected via Cloudflare Radar · Wappalyzer engine
Поскаржитися на цей домен Надішліть докази та допоможіть захистити інших

Аналіз VirusTotal

13 / 91 постачальників безпеки позначили цей домен
View on VT
Last analyzed
Criminal IP
alphaMountain.ai
BitDefender
Certego
Cluster25
CyRadar
ESET
Forcepoint ThreatSeeker
G-Data
Gridinsoft
SOCRadar
Sophos
Webroot
Аналіз продуктивності сайту

Google PageSpeed Insights — mobile performance audit of live-appxldgre.wixstudio.com · checked Jun 25, 2026

84
Needs Work
Performance
FCP
2.42s
First Contentful Paint
LCP
4.05s
Largest Contentful Paint
CLS
0.002
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
2.42s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Аналіз конфігурації сайту
Stored observations are retained with their original collection time.
robots.txt Present · HTTP 200
/_partials* /pro-gallery-webapp/v1/galleries/*

Докази та зовнішні звіти

Чи вплинув на вас цей сайт?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.

Європол
Знайдіть офіційний канал звітності для вашої країни ЄС
National police directory
Остерігайтеся шахраїв, які обіцяють повернути втрачені кошти! Злочинці можуть знову зв’язатися з жертвами, видаючи себе за слідчих, адвокатів або агентів із відновлення. Не сплачуйте авансових зборів і не діліться обліковими даними. Дізнайтеся більше про шахрайство у сфері відшкодування збитків →

Зверніться до місцевих органів влади

Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.

Довідник 97 країн
Чернетка за допомогою штучного інтелекту — деталі інциденту обробляються постачальником штучного інтелекту Перегляньте та подайте його самостійно

Перевірити будь-який домен

Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування

Сканувати зараз

Повідомити про фішинг

Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту

Повідомити

Потокова стрічка про загрози

Останні звіти про фішинг і помічені зміни доступності

Відстежувати

Будьте в курсі подій, дбайте про свою безпеку

Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога

Потокова стрічка про загрози Оскаржити це оголошення
HTML · IFRAME

Вбудувати цей звіт

Поділіться цією інформацією про загрози на своєму веб-сайті або в блозі

embed.html
<iframe
  src="https://phishdestroy.io/uk/embed/domain/live-appxldgre.wixstudio.com"
  title="PhishDestroy threat report for live-appxldgre.wixstudio.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Дуже щирий лист-подяка

Генератор сатиричних чернеток

Одержувач
Контекст зборів

Це сатирична чернетка. Суми зборів є оцінками; ми не стверджуємо, що вони точно стосуються цього домену.