startedsso-ledzercdn[.]wixstudio[.]com
“Ledger.com/Start®®® | Getting® started — Ledger®”
startedsso-ledzercdn.wixstudio.com — Контент недоступний. Уособлення бренду: Ledger. Зведення доказів: VirusTotal 4/91 (alphaMountain.ai, Cluster25, ESET, Gridinsoft); URLScan malicious verdict; PhishDestroy score 65/100. Реєстратор: GoDaddy.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, startedsso-ledzercdn.wixstudio.com, is flagged as a generic phishing infrastructure under active investigation. Analysis indicates it is designed to mimic single sign-on (SSO) authentication portals, likely targeting corporate or cloud service credentials. The domain name incorporates deceptive subdomains (startedsso-ledzercdn) to simulate legitimate identity provider endpoints, a common tactic in credential harvesting campaigns. No specific brand impersonation or drainer kit signatures have been confirmed at this stage, though the structure suggests a focus on enterprise or SaaS credential theft. Infrastructure analysis reveals the domain is hosted on a Wix Studio platform, utilizing a Let’s Encrypt SSL certificate for encrypted communications. It currently resolves to the IP address 34.144.206.118, which is associated with cloud hosting providers. As of the latest scan, VirusTotal reports 0 detections out of 95 security engines, indicating the domain has not yet been widely flagged. No creation date metadata is publicly available, and the domain remains unlisted on Google Safe Browsing (GSB) or major blocklists. The registrar details are obscured by the Wix Studio platform, limiting visibility into ownership or registration timelines. The domain remains active and operational, with no takedown or sinkholing actions observed. Given the zero-detection status on VirusTotal and absence from blocklists, the infrastructure poses a moderate-to-high risk to users unfamiliar with SSO phishing tactics. Organizations are advised to implement network-level blocking of 34.144.206.118 and monitor for connections to startedsso-ledzercdn.wixstudio.com in proxy or DNS logs. Endpoint protection should be updated to include this domain in phishing detection rules, and users should be trained to verify SSO portal authenticity before entering credentials.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: wixstudio.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 5 identified
Wix provides cloud-based web development services, allowing users to create HTML5 websites and mobile sites.
www.wix.com 100% впевненостіReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% впевненостіCloud CDN uses Google's global edge network to serve content closer to users.
cloud.google.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of startedsso-ledzercdn.wixstudio.com · checked Jul 1, 2026
Аналіз конфігурації сайту
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога