MALICIOUS — CRITICAL
tezor-suite-docs.pages.dev Safety Check — Phishing Detected
tezor-suite-docs[.]
The domain tezor-suite-docs.pages.dev is registered via Cloudflare, Inc.
- VirusTotal
- 7/91
- Blocklists
- No stored match
- Disponibilité
- Accessible · accès restreint · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
tezor-suite-docs.pages.dev — Accessible · accès restreint (HTTP 403). Usurpation de l'identité de la marque : Trezor. Résumé des preuves: VirusTotal 7/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Fortinet, G-Data); URLScan malicious verdict; PhishDestroy score 71/100. Bureau d’enregistrement: Cloudflare.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
Evidence Analysis
The domain tezor-suite-docs.pages.dev is registered via Cloudflare, Inc. and uses the Cloudflare authoritative nameservers addilyn.ns.cloudflare.com and arturo.ns.cloudflare.com. DNS resolution points to the IP address 172.66.44.254, which is a Cloudflare edge node. The domain is currently marked as active with an elevated risk rating and is classified as generic phishing. Threat intelligence from PhishDestroy lists the domain as blocked, indicating that at least one reputable phishing mitigation service has taken action against it.
VirusTotal analysis shows that 7 of 91 security vendors have flagged the domain as malicious, providing a modest consensus of detection across the security community. Additionally, the domain appears on a single external security blocklist, reinforcing its malicious reputation. No public information on SSL certificate details, HTTP response codes, page title, or content analysis is available, leaving the surface‑web characteristics of the site unverified. Consequently, attribution to a specific phishing campaign, target brand, or malicious kit cannot be confirmed at this stage.
Defenders should enforce DNS‑level blocking for tezor-suite-docs.pages.dev, add the address 172.66.44.254 to network‑level deny lists, and monitor outbound traffic for connections to that IP. Continuous observation of VirusTotal and blocklist feeds is advised to capture any changes in vendor detections. Incident response teams should treat any credentials or session data submitted to this domain as compromised, prompting immediate password resets and user notification.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Couverture des données12 recorded checks
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Technologies · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confiance à 100 %Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Confiance à 100 %HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confiance à 100 %Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of tezor-suite-docs.pages.dev · checked Jul 29, 2026
Données factuelles et rapports externesIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.