logenn-treez-ioi[.]pages[.]dev
“Trezor @Login — Secure Crypto Access”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
PhishDestroy identifies logenn-treez-ioi.pages.dev as an active crypto drainer scam posing as a legitimate service. The domain leverages Cloudflare Pages to host a fraudulent interface impersonating well-known wallet providers or crypto platforms, tricking users into signing malicious transaction approvals that drain wallet funds. This is a generic phishing threat with no specific brand alignment, relying on social engineering to exploit user trust in crypto ecosystems. The scam redirects victims to a fake wallet approval page, where connecting their wallet triggers a malicious smart contract to siphon tokens directly. This drainer kit is designed to operate silently, bypassing user awareness until funds are lost. The domain’s structure mimics legitimate services, with subdomains like 'pages.dev' adding a veneer of authenticity to deceive targets.
Technical indicators for logenn-treez-ioi.pages.dev confirm its malicious nature. The domain resolves to IP 188.114.97.3, a Cloudflare-hosted address, with SSL certification from Google Trust Services (GTS) to enhance credibility. VirusTotal currently reports 1/95 detections, indicating this scam has not yet been widely flagged by security vendors. The registrar is Cloudflare, Inc., leveraging its infrastructure to obscure the scammer’s identity. While the exact creation date is not publicly disclosed, the use of Cloudflare Pages suggests a recent deployment, likely within the last few months. The domain remains unlisted on Google Safe Browsing (GSB) and has not been added to major blocklists, leaving users vulnerable to exposure. The lack of detections highlights the challenge of identifying such scams, as they often evade traditional security measures through legitimate hosting and SSL certificates.
The current status of logenn-treez-ioi.pages.dev is active, with no immediate takedown actions observed. PhishDestroy assesses this domain as HIGH RISK due to its crypto drainer functionality and the potential for significant financial loss. Users are strongly advised to block access to this domain at the network level and avoid any interaction with its hosted content. Immediate actions include reporting the domain to Google Safe Browsing (via their report page) and submitting it to threat intelligence platforms like VirusTotal for analysis. While the domain’s infrastructure is robust, security teams can mitigate risk by monitoring for similar patterns (e.g., Cloudflare Pages-hosted crypto drainers) and educating users about the dangers of wallet approvals. The remaining risk is high, as the scam remains undetected by most security tools, and the infrastructure allows for rapid rebranding or subdomain changes to evade blocks.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
التقنيات
حُدّدت ٤ تقنيات عالية الثقة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of logenn-treez-ioi.pages.dev · checked May 1, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب