tresr-io-sart-era[.]pages[.]dev
“Desktop & Web Crypto Management with Trezor Hardware Wallet”
tresr-io-sart-era.pages.dev — المحتوى غير متوفر. انتحال العلامة التجارية: Trezor; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 0/94; URLScan malicious verdict; PhishDestroy score 45/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy identifies tresr-io-sart-era.pages.dev as a brand impersonation scam targeting Trezor hardware wallet users through a fake crypto management portal. The domain masquerades as an official Trezor service, using identical branding elements and a misleading page title ('Desktop & Web Crypto Management with Trezor Hardware Wallet') to deceive visitors into entering sensitive wallet credentials or downloading malicious software. This active phishing campaign is designed to harvest cryptocurrency assets by exploiting trust in Trezor's established reputation. The domain resolves to IP 188.114.97.3, which currently shows no security blocklist detections despite its fraudulent nature. The technical indicators of this threat are concerning yet evolving. VirusTotal scans show 0 detections out of 95 engines, indicating the domain has evaded traditional antivirus detection systems. The site operates through Cloudflare, Inc., a common tactic to obscure the true origin of malicious domains, and uses a Google Trust Services SSL certificate to appear legitimate. While the exact domain creation date is not provided, the use of Cloudflare's pages.dev subdomain structure suggests recent deployment, typical of opportunistic phishing campaigns. The impersonation specifically targets Trezor users through a false promise of desktop and web crypto management, a core function of Trezor's actual services. Users who have visited this domain should immediately assess their cryptocurrency holdings for unauthorized transactions. If any wallet access was attempted on this site, disconnect the device from the internet and perform a factory reset on the hardware wallet. Trezor users should never enter seed phrases or private keys on any website claiming to offer web-based wallet management outside Trezor's official domain (trezor.io). Report this domain to Trezor's official support channels and consider revoking any connected third-party application permissions. Monitor financial accounts closely for suspicious activity and enable all available security features on legitimate Trezor devices.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
تحليل VirusTotal
الأدلة المؤرشفة
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of tresr-io-sart-era.pages.dev · checked Apr 12, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب