trezor[.]io-suite-bridge[.]app
“trezor.io-suite-bridge.app”
trezor.io-suite-bridge.app — Contenido no disponible. Suplantación de marca: Trezor; Tipo de estafa: Crypto Drainer. Resumen de las pruebas: VirusTotal 5/91 (Emsisoft, Fortinet, Netcraft, SOCRadar, Webroot); Spamhaus DBL_PHISH; CF Radar malicious; PhishDestroy score 65/100.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
Analysis as of July 27, 2026 indicates that the domain trezor.io-suite-bridge.app remains active and is classified as a crypto‑drainer infrastructure. The domain is currently blocked by the PhishDestroy sinkhole, suggesting that defensive operators have observed malicious traffic and taken mitigation steps. Authoritative name servers are a.dnspod.com, b.dnspod.com and c.dnspod.com, which are typical of the DNSPod service and provide no immediate indication of compromise beyond the fact that the domain resolves to a single IPv4 address, 82.27.2.25. The IP address is listed on one public security blocklist, reinforcing the view that it is associated with abusive activity.
VirusTotal has processed the domain with 91 antivirus and URL‑reputation engines; none of the engines reported a detection at the time of the scan. While the lack of detections does not confirm benign intent, it demonstrates that the domain has not yet been flagged by the majority of commercial scanners. No public Safe Browsing, Open Threat Exchange, or registrar‑level reputation data were found for the domain, and no SSL certificate details or HTTP response codes have been published. Consequently, the current evidence base is limited to DNS and blocklist information.
Defenders should continue to monitor the domain, enforce existing blocklist entries, and consider adding the domain to local deny lists. Network traffic to 82.27.2.25 should be inspected for signs of cryptocurrency transaction interception or wallet credential exfiltration, consistent with the crypto‑drainer profile. Ongoing collection of page content, TLS fingerprints, and any observed payloads will be essential to refine detection signatures and to confirm whether the infrastructure is being used to target specific cryptocurrency platforms.
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
Análisis de VirusTotal
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.