project-io-suites[.]netlify[.]app
“Trezor Suite | Secure Crypto Management App”
project-io-suites.netlify.app — المحتوى غير متوفر. انتحال العلامة التجارية: Trezor; نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 19/91 (ChainPatrol, Criminal IP, alphaMountain.ai, BitDefender, CyRadar); URLQuery 3 alerts; URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. مسجّل النطاق: Netlify.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain, project-io-suites.netlify.app, is flagged as an active credential harvesting phishing infrastructure targeting users of productivity suite services. Analysis indicates the site mimics legitimate login portals to capture authentication credentials, session tokens, or other sensitive user data. The domain is designed to exploit trust in widely used enterprise software, potentially leading to unauthorized account access, data exfiltration, or further lateral movement within compromised networks. Infrastructure analysis reveals the domain is hosted on Netlify’s platform and resolves to the IP address 35.157.26.135. The SSL certificate is issued by DigiCert Inc, providing a veneer of legitimacy to unsuspecting users. As of the latest investigation, the domain has not been flagged by any of the 95 security engines on VirusTotal, indicating it may still be in the early stages of deployment or evading detection through obfuscation techniques. No blocklist entries or prior reports were identified, further suggesting its novelty in the threat landscape. Users who have visited project-io-suites.netlify.app or entered credentials on the site should immediately revoke any active sessions associated with the affected account. Reset passwords using a secure, unrelated device and enable multi-factor authentication if not already active. Monitor the account for unauthorized access or suspicious activity, including unexpected login attempts or changes to account settings. Organizations should consider isolating affected endpoints and reviewing network logs for connections to 35.157.26.135 or related subdomains. If credentials were entered, assume they are compromised and rotate them across all services where they may have been reused.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | project-io-suites.netlify.app |
malicious | Sinkholed |
| OpenDNS | project-io-suites.netlify.app |
phishing | Phishing Block |
| Quad9 DNS | project-io-suites.netlify.app |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of project-io-suites.netlify.app · checked Jun 26, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب