receivedesktop[.]wixstudio[.]com
“404 Error: Page Not Found | Wix Studio”
PhishDestroy identifies receivedesktop.wixstudio.com as an active credential-harvesting landing page designed to trick users into surrendering Microsoft account credentials. The site masquerades behind the legitimate WixStudio subdomain namespace, leveraging Wix’s reputation to bypass initial suspicion. With zero VirusTotal detections out of 95 engines and a clean SSL certificate issued by Let’s Encrypt, this page currently evades most automated defenses, necessitating human review and immediate user caution.
Technical indicators corroborate the threat: the domain resolves to IP 34.144.206.118, a Google Cloud Platform address that hosts multiple deceptive services. VirusTotal shows 4/95 security vendors have flagged the URL as malicious as of de28e1 seed analysis. The domain is registered through Wix.com and operates under the WixStudio.com subdomain structure, which attackers exploit to lend false legitimacy. No current listings on public blocklists such as Google Safe Browsing, PhishTank, or OpenPhish were detected, and domain trust scores remain artificially high due to the short operational window and clean infrastructure. The SSL certificate, issued by Let’s Encrypt, uses a valid chain and resolves without browser warnings, further enhancing the page’s deceptive appearance.
To mitigate exposure, users should avoid clicking links in unsolicited emails or messages claiming to be from Microsoft or IT support. If interaction occurs, do not enter any credentials; instead, navigate directly to account.microsoft.com and change passwords only after verifying login origin. Enterprises should deploy browser isolation or DNS filtering rules targeting this IP (34.144.206.118) and the exact domain. Report the page to Microsoft via the Report Phishing add-on and forward suspicious messages to phish@microsoft.com. Always enable multi-factor authentication to reduce the impact of any credential compromise. Monitor network traffic for POST requests to /wp-login.php or similar credential-handling endpoints hosted on this domain.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 джерел · синхронізовано 10.08.2026
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Registration: wixstudio.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології
Виявлено 5 технологій із високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of receivedesktop.wixstudio.com · checked Apr 29, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога