trezor[.]io-app[.]online
“Trezor Suite App (Official) | The Secure Hub for All Your Digital Assets”
trezor.io-app.online — Konten tidak tersedia (HTTP 502). Peniruan identitas merek: Trezor; Jenis penipuan: Crypto Scam. Ringkasan bukti: VirusTotal 12/93 (alphaMountain.ai, BitDefender, CyRadar, ESET, Fortinet); PhishDestroy score 86/100.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
On 25 July 2026, the domain trezor.io-app.online was observed hosting a brand‑impersonation page that claimed to be the “Trezor Suite App (Official)”. The site was registered on 21 February 2026 and resolved to the IPv4 address 66.33.60.129, which is allocated to Amazon.com, Inc. (AS16509) in the United States. VirusTotal recorded 12 detections out of 93 scanning engines, indicating that a minority of security products flagged the domain as malicious. The SSL certificate was identified with the rating “R10”, and the Gridinsoft trust score was 0 / 100, reflecting a lack of trustworthiness.
The domain was listed on a single security blocklist and was actively taken down by the PhishDestroy mitigation service; its current HTTP status is offline. The page title explicitly references the Trezor brand, confirming the impersonation of the hardware‑wallet provider. The campaign is classified as a crypto‑scam, consistent with the use of the Trezor brand to lure cryptocurrency users. Defenders should immediately add 66.33.60.129 to deny‑list rules, enforce DNS filtering for the trezor.io‑app.online suffix, and monitor for newly registered domains that combine the “trezor” keyword with the “io‑app.online” TLD pattern.
Network‑level controls should include blocking traffic to the identified ASN (AS16509) when it originates from suspicious URLs. Threat‑intel feeds should be updated to reflect the 12 VirusTotal detections and the 0 / 100 Gridinsoft score, and security appliances should be instructed to treat any future resolution of this domain as malicious. Continuous review of phishing‑related blocklists is advised, as the low blocklist count suggests that broader community awareness may still be limited.
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Intelijen Forensik
Analisis VirusTotal
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive