# trazor-walet-hrdware-io.pages.dev — SUSPICIOUS > PhishDestroy identifies trazor-walet-hrdware-io.pages.dev as a crypto wallet phishing site with 0/95 VirusTotal detections. ## Summary PhishDestroy identifies trazor-walet-hrdware-io.pages.dev as an active phishing domain designed to mimic a crypto wallet hardware interface to steal credentials and funds. This site leverages the *.pages.dev subdomain under Cloudflare Pages to host a spoofed interface resembling legitimate hardware wallet login portals. Attackers often use such domains to distribute malicious browser extensions, prompt users for seed phrases or private keys, or inject fake payment requests under the guise of verifying device authenticity. Traditional antivirus systems have not yet flagged this domain, with VirusTotal showing 0 detections out of 95 scanners as of the latest scan. This domain was registered through Cloudflare, Inc. via Google Trust Services SSL certificate, resolving to IP address 172.66.47.59. While no public blocklist count is available yet, the absence of detections on VirusTotal indicates low detection coverage, making it particularly dangerous for unaware users. The use of a Cloudflare Pages subdomain allows rapid deployment and takedown evasion, a common tactic in phishing campaigns targeting cryptocurrency users. The domain structure closely mirrors legitimate crypto wallet hardware providers, likely intended to trick users into entering sensitive recovery phrases or connecting compromised devices. If you visited trazor-walet-hrdware-io.pages.dev, assume your device may have been exposed to credential theft or malware delivery. Do not use any passwords, seed phrases, or crypto wallet private keys on this site. Disconnect any connected hardware wallets immediately, scan your device with multiple antivirus tools, and revoke any suspicious browser permissions. Report the domain to your antivirus provider and monitor your crypto wallets for unauthorized transactions. Consider using hardware wallets with verified firmware and only access them through official, bookmarked channels. 117c66 ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registrar: Cloudflare, Inc. - IP: 172.66.47.59 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/fa834270-23f5-47de-8bc3-3d2bbfdd2e07 - PhishDestroy: https://phishdestroy.io/domain/trazor-walet-hrdware-io.pages.dev/ - LLM endpoint: https://phishdestroy.io/domain/trazor-walet-hrdware-io.pages.dev/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/trazor-walet-hrdware-io.pages.dev/ Last updated: 2026-03-22