trrezorawallet[.]webflow[.]io
“Trezor wallet Model One | The Original Crypto Hardware Wallet”
trrezorawallet.webflow.io — Contenido no disponible. Suplantación de marca: Trezor; Tipo de estafa: Brand Impersonation. Resumen de las pruebas: VirusTotal 8/91 (ChainPatrol, CyRadar, Emsisoft, Fortinet, Kaspersky); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 74/100. Registrador: MarkMonitor.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
This domain operates as a brand impersonation threat specifically targeting Trezor hardware wallet users. Analysis indicates the site replicates the official Trezor Model One interface, presenting itself as "The Original Crypto Hardware Wallet" to deceive visitors into entering sensitive recovery phrases or private keys. The objective appears to be asset theft through crypto drainer mechanisms, where unauthorized transactions are initiated once credentials are compromised. The domain's infrastructure and content are designed to exploit trust in the Trezor brand, potentially leading to irreversible financial losses for victims. Infrastructure analysis reveals multiple high-risk indicators. The domain, trrezorawallet.webflow.io, was created on June 15, 2026, through MarkMonitor, Inc., and resolves to the IP address 104.18.36.248. It is currently flagged by 13 out of 95 security vendors on VirusTotal and appears on three independent security blocklists. Additionally, the domain has been proactively blocked by multiple security platforms, including MetaMask, PhishDestroy, and SEAL. The SSL certificate is issued by Google Trust Services, which, while legitimate, does not mitigate the malicious intent of the site. The combination of these factors confirms the domain's role in facilitating fraudulent activities. Users who visited trrezorawallet.webflow.io should take immediate action to secure their assets. If any credentials, recovery phrases, or private keys were entered on the site, affected wallets must be considered compromised. Transfer all remaining assets to a new, secure wallet using a clean device and a verified recovery process. Monitor all linked accounts for unauthorized transactions and enable multi-factor authentication where available. Report the incident to relevant security teams and consider filing a report with local cybercrime authorities. Given the high-risk nature of this domain, affected users should also conduct a full security audit of their devices to rule out additional compromise.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
Tecnologías · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100 % de confianzaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % de confianzaAnálisis de VirusTotal
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of trrezorawallet.webflow.io · checked Jun 25, 2026
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.