bredges--trwzer-web[.]pages[.]dev
“Trezor Bridge: Secure Connection for Your Hardware Wallet”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
This domain, bredges--trwzer-web.pages.dev, is flagged for brand impersonation targeting Trezor, a hardware wallet provider. Analysis indicates the site mimics Trezor Bridge, a legitimate software component used to establish secure connections between Trezor devices and web browsers. The page title, 'Trezor Bridge: Secure Connection for Your Hardware Wallet,' directly replicates official branding, suggesting an intent to deceive users into interacting with malicious infrastructure under the guise of trusted software. No crypto drainer kit signatures were identified in initial scans, but the domain's structure and content align with tactics used in credential harvesting or malware distribution campaigns. Technical indicators reveal the following: the domain exhibits 0/95 detections on VirusTotal, indicating no prior flagging by security vendors at the time of analysis. It was registered on May 01, 2026, through Cloudflare, Inc., and resolves to the IP address 172.66.44.174. The SSL certificate is issued by Google Trust Services, a common feature in both legitimate and malicious domains leveraging Cloudflare's infrastructure. The domain appears on one security blocklist, as reported by PhishDestroy, and employs technologies such as HSTS, Cloudflare, and HTTP/3. Gridinsoft assigns a trust score of 0/100, further corroborating its suspicious nature. No detections were recorded in Google Safe Browsing databases at the time of this report. The domain is currently offline, having been taken down following initial detection. Response actions included reporting the domain to relevant blocklists and notifying the hosting provider to prevent further access. Despite its offline status, residual risk remains due to the potential for re-registration or migration to alternative infrastructure. Users who may have interacted with the domain are advised to revoke any active sessions, rotate credentials, and verify the integrity of their systems for unauthorized modifications. Organizations should monitor for similar impersonation attempts, particularly those leveraging subdomain services (e.g., *.pages.dev) to evade detection. Continuous scrutiny of domains mimicking hardware wallet software is recommended, given the high-value targets associated with cryptocurrency assets.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 10/08/2026
المخطط الزمني للاكتشاف
-
VirusTotal
4 ← 0
بلاغات المجتمع
أبلغ عنه عضو واحد في المجتمع؛ شوهد أول مرة في 01/05/2026
- البلاغات المحفوظة
- 1
- عناوين URL الفريدة المبلغ عنها
- 1
معلومات المجتمع
بلاغ مجتمعي واحد
الفئةPHISHING
The PhishFort Detection System has flagged this as a domain threat, classified as phishing. Associated tags: subdomain, typosquat. Threat detected at 2026-05-01T15:09:18.575Z.
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
التقنيات
حُدّدت ٣ تقنيات عالية الثقة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of bredges--trwzer-web.pages.dev · checked Jun 26, 2026
نطاقات متشابهة
٧٤ نطاقًا متشابهًا محفوظًا
عرض الكل (62)
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب