cdn-io--start-en-tre[.]pages[.]dev
“Trezor/io.start® — Connect Your Web3 World Securely™”
cdn-io--start-en-tre.pages.dev — لم يتم التحقق منها. انتحال العلامة التجارية: Trezor; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 11/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLScan malicious verdict; PhishDestroy score 88/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain is actively impersonating Trezor, a well-known cryptocurrency hardware wallet provider, to deceive users into disclosing sensitive credentials or installing malicious software. Analysis indicates the site mimics Trezor’s official web interface, presenting a fraudulent login portal under the title 'Trezor/io.start® — Connect Your Web3 World Securely™'. Such impersonation is commonly associated with crypto drainer schemes, where attackers trick victims into connecting wallets to malicious smart contracts, leading to unauthorized fund transfers or complete asset loss. Infrastructure analysis reveals concrete indicators of compromise. The domain, registered through Cloudflare, Inc., was created on April 09, 2026, and resolves to the IP address 172.66.47.53, located in Canada. Security vendors have flagged this domain, with VirusTotal reporting 7 out of 95 engines detecting malicious activity. Additionally, the domain appears on one security blocklist, and its SSL certificate is issued by Google Trust Services (WE1), a common characteristic of attacker-controlled infrastructure leveraging legitimate CDN services to evade detection. Users who have visited cdn-io--start-en-tre.pages.dev or interacted with its content should take immediate action to mitigate risk. Disconnect any wallets linked to the site and revoke permissions via the official wallet interface. Scan the device for malware using updated security tools, and monitor connected accounts for unauthorized transactions. If credentials were entered, reset passwords and enable multi-factor authentication on all critical accounts. Given the high-risk nature of this threat, affected users should also consider migrating assets to a new wallet and reporting the incident to relevant security teams for further investigation.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of cdn-io--start-en-tre.pages.dev · checked Apr 9, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب