started-desktop[.]wixstudio[.]com
“Ledger® Live: Desktop — Getting Started®”
已存储的观测记录
观测到的标题差异
证据摘要
PhishDestroy identifies started-desktop.wixstudio.com as a live fake-login phishing domain actively luring users to enter credentials under the guise of a software update or service authentication. The current risk level is under_investigation while analysts assess the scope and payload; this classification may be upgraded pending further intelligence. Users should treat any prompts from or links to this domain—or its parent wixstudio.com—as hostile until the investigation concludes.
This domain resolves to IPv4 address 34.144.206.118 and is secured with a Let’s Encrypt SSL certificate, which does not guarantee legitimacy. VirusTotal reports 8 out of 95 engines currently flagging the page, while reputation engines show no blocklist presence and trust scores remain neutral. WHOIS data indicates the domain is freshly minted (date redacted for ongoing analysis), hosted within Google Cloud Platform, and registered via Wix.com—an unusual hosting choice for phishing that may be leveraged to bypass traditional domain-based defenses.
Mitigation for this fake-login phishing vector requires immediate user awareness and technical controls. Users should never enter credentials into any form linked from unsolicited emails, messages, or pop-ups referencing software updates or account verifications. Security teams should block the IP 34.144.206.118 at the firewall and apply browser-based policies to deny navigation to started-desktop.wixstudio.com and its subdomains. Additionally, consider deploying DNS sinkholing for wixstudio.com until the hosting provider clarifies its stance, and monitor internal endpoints for signs of credential harvesting using EDR rules tuned to detect exfiltration to known rogue IPs. Update phishing awareness training to explicitly warn against “software update” lures delivered via email or browser notifications.
Data Coverage
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | started-desktop.wixstudio.com |
malicious | Sinkholed |
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
已保存的截图
域名情报
技术详情DNS、TLS 名称和时间戳
ICANN OVERSIGHT
Registration: wixstudio.com
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For the registrable domain wixstudio.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of started-desktop.wixstudio.com · checked Apr 4, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控