bridges-guide-page[.]pages[.]dev
“Trezor Bridge – Secure Gateway”
PhishDestroy identifies bridges-guide-page.pages.dev as a malicious domain engaging in crypto drainer brand impersonation, currently active as of seed 045312. This domain employs a precise imitation of the Trezor brand, presenting a fraudulent page titled 'Trezor Bridge – Secure Gateway' to deceive users into downloading a crypto drainer under the guise of a legitimate Trezor tool. VirusTotal currently shows zero vendor detections out of 95, indicating a newly deployed or highly evasive threat actor infrastructure. The domain is registered through Cloudflare, Inc. and currently resolves to IP address 172.66.44.178. The SSL certificate is issued by Google Trust Services, adding a false veneer of legitimacy. The domain leverages the pages.dev subdomain under Cloudflare Pages, a common tactic to rapidly deploy malicious infrastructure under a trusted parent domain. The domain was flagged by zero VirusTotal vendors despite clear malicious intent. The SSL certificate issued by Google Trust Services increases the likelihood of successful social engineering due to the trust users place in Google-branded domains. The combination of zero detections, Cloudflare infrastructure, and active status indicates an emerging threat that has not yet been widely recognized by security vendors. Users are advised to immediately block access to bridges-guide-page.pages.dev at the network level and avoid all interactions with this domain. Trezor users should only download official bridge software from trezor.io. Security teams should add this domain and IP 172.66.44.178 to blacklists and monitor for related infrastructure. Exercise increased caution with any unsolicited links claiming to be Trezor Bridge or similar crypto-related tools. Report this threat to Trezor's official abuse channels and share detection rules with the security community to improve collective defense against this crypto drainer campaign.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
10 مصادر · تمت المزامنة في 09/08/2026
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of bridges-guide-page.pages.dev · checked Apr 19, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب