Is official-trexorsuite.wixstudio.com safe or a scam?

This Wix-hosted domain hosts a phishing page designed to harvest credentials.

Critical Risk
Phishing / Credential Theft

At a glance

Antivirus · registration · identity
Antivirus detections
9 flagged
9 malicious · 0 suspicious
alphaMountain.ai
Domain registration
Dec 17, 2016Registered
10 years oldAt scan time
Operator identity
Missing
No independently verifiable operator identity
Verified factsSaved with this scan
  1. 9 engines classified the URL as malicious and 0 as suspicious; 50 returned harmless, 33 returned undetected, and 0 returned no usable result.
  2. Operator identity: Missing. No independently verifiable operator identity
  3. The domain was registered Dec 17, 2016 and was 10 years old at scan time.
  4. Google Safe Browsing returned no listed threat categories for this address at scan time.
  5. The site presented a valid TLSv1.3 certificate at scan time.

Intelligence

The domain official-trexorsuite.wixstudio.com presents a single-hop landing page on Wix infrastructure that multiple independent antivirus engines classify as malicious phishing. The visitor journey ends at this address with no further redirects observed, and the page is structured to solicit credentials or other sensitive information.

Evidence Map

Reputation
Concern

One or more reputation sources recorded a concern

Identity
Limited

No independently verifiable operator identity

Behavior
Unavailable

No usable behavior observation was saved

History
Observed

The domain was registered Dec 17, 2016 and was 10 years old at scan time.

Risk Factors
  • 19 antivirus engines classify the URL as malicious
  • 2Hosting IP carries an abuse-confidence score of 23/100
  • 3Phishing page designed to harvest credentials or sensitive data

Domain and hosting profile

The domain official-trexorsuite.wixstudio.com was registered on 17 December 2016 and is therefore ten years old. It serves content over a valid TLSv1.3 certificate and resolves to a hosting IP that carries an abuse-confidence score of 23/100 based on 21 prior reports.

Antivirus classification

Nine separate antivirus engines returned a malicious classification for the URL while none marked it suspicious; fifty engines returned harmless and thirty-three returned undetected.

Visitor journey and page purpose

The observed redirect path consists of a single hop with no cross-domain movement, homoglyph substitution, or internationalized domain. The page itself is categorized as an unknown or suspicious landing page whose supported harm mechanism is credential harvesting.

Registration details

Privacy protection was not observed on the registration record.

Web Research

No independently sourced claims were found for this report.

Threat Detection

Antivirus results, browser warnings, isolated page observations, and the threat pattern identified in this report.

Antivirus distribution
Recorded engine classifications, not a blanket clean bill
92 engines
Malicious9
Suspicious0
Harmless50
Undetected33
No result0
Antivirus consensus

Antivirus engine results

Result date Jul 21, 2026
Detection matrix
9 engines flagged this URL

This scan saved classifications from an antivirus network of 92 engines. Each malicious or suspicious classification is listed below by engine name and should be weighed with the rest of the report.

9Malicious0Suspicious50Harmless33Undetected0No result92Engines
0
of 92
alphaMountain.ai
Malicious· phishing
BitDefender
Malicious· phishing
ESET
Malicious· phishing
Forcepoint ThreatSeeker
Malicious· phishing
Fortinet
Malicious· phishing
G-Data
Malicious· phishing
LevelBlue
Malicious· phishing
Sophos
Malicious· phishing
Webroot
Malicious· malicious

9 antivirus engines flagged this URL. A single classification is not consensus by itself. Review its label together with the page, identity, behavior, and history evidence shown in this report.

Threat pattern
Phishing / Credential Theft
Threat tags
phishing
Top reasons

Evidence behind this threat profile

3 reasons
  1. 19 antivirus engines classify the URL as malicious
  2. 2Hosting IP carries an abuse-confidence score of 23/100
  3. 3Phishing page designed to harvest credentials or sensitive data
Scam-Type Likelihood

1 of 21 categories showed signals

This profile separates the site's primary threat from other patterns supported by the saved page evidence, public research, and security findings.

Top match: Phishing
Phishing
High likelihood
92/100
  • 9/92 antivirus engines flagged the domain as phishing
  • Specific detections from alphaMountain.ai, BitDefender, ESET, Forcepoint ThreatSeeker, Fortinet, and G-Data all label it phishing

Technical Details

Identity, domain, infrastructure, and connection facts saved with this scan.

July 21, 2026 at 12:02 PM UTC

Identity

6 facts
Operator
Missing
On-domain email
Not observed
Other email
Not observed
Phone
Not observed
Postal address
Not observed
Social profiles
Not observed

Domain

8 facts
Domain age
10 years old
Registered
Dec 17, 2016
Registrar
GoDaddy.com, LLC
Expires
Dec 17, 2027
WHOIS updated
May 1, 2024
Registrant
Unavailable
Registration country
Unavailable
WHOIS privacy
Not observed

Infrastructure

14 facts
HTTPS
Valid certificate
TLS protocol
TLSv1.3
Certificate issuer
Let's Encrypt · YR1
Certificate subject
*.wixstudio.com
Certificate valid from
Jun 24, 2026
Certificate valid to
Sep 22, 2026
Network address
34.144.206.118
ASN
Unavailable
Hosting organization
Google LLC
Country
US
Server
Unavailable
Site platform
Unavailable
IP reputation
23% confidence · 21 reports
Tor exit node
No

Connections

13 facts
Scan scope
Domain
Destination host
official-trexorsuite.wixstudio.com
Redirects
1
Cross-domain redirect
No
Redirect status codes
301 → 404
Lookalike characters
Not observed
Internationalized domain
No
Page response
404
Observation coverage
Unavailable
Extracted links
Unavailable
Unique IPs contacted
Unavailable
Countries contacted
Unavailable
Referenced domains
0

What to do

1
Before interacting
Do not sign in

Do not visit or enter any information. The domain is flagged by multiple antivirus engines as a phishing site built to capture credentials.

2
If you already interacted

If you entered a password, change it on the official service by typing its known address yourself, enable two-factor authentication, and review recent account activity. Contact your bank if you also entered payment details.

Final Verdict

Do not sign in

Why this verdict

The verdict is malicious phishing because 9 antivirus engines flagged the URL and the page is built to capture credentials or sensitive data.

Recommendation

Do not visit or enter any information. The domain is flagged by multiple antivirus engines as a phishing site built to capture credentials.

Key evidence

  1. 19 antivirus engines classify the URL as malicious
  2. 2Hosting IP carries an abuse-confidence score of 23/100
  3. 3Phishing page designed to harvest credentials or sensitive data
Evidence: strongScope: DomainFresh scan: July 21, 2026 at 12:02 PM UTC

Safety FAQ

Is official-trexorsuite.wixstudio.com safe to use?+

The verdict is malicious phishing because 9 antivirus engines flagged the URL and the page is built to capture credentials or sensitive data.

What should I do about official-trexorsuite.wixstudio.com?+

Do not visit or enter any information. The domain is flagged by multiple antivirus engines as a phishing site built to capture credentials.

How old is official-trexorsuite.wixstudio.com?+

official-trexorsuite.wixstudio.com is 10 years old and was registered dec 17, 2016.

What if I already interacted with official-trexorsuite.wixstudio.com?+

If you entered a password, change it on the official service by typing its known address yourself, enable two-factor authentication, and review recent account activity. Contact your bank if you also entered payment details.

When was this report updated?+

This report reflects the scan completed July 21, 2026 at 12:02 PM UTC.