us-trezor[.]framer[.]ai
“Official Site® | Trezor.io/start® - Trezor”
us-trezor.framer.ai — Konten tidak tersedia (HTTP 404). Peniruan identitas merek: Trezor; Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 3/91 (ChainPatrol, Kaspersky, LevelBlue); URLQuery 1 alert; URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 66/100. Registrar: CSC.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
The domain us-trezor.framer.ai is flagged as a brand-impersonation site targeting the cryptocurrency hardware-wallet provider Trezor. The page title returned by the server is “Official Site® | Trezor.io/start® - Trezor”, which directly references the legitimate brand. An HTTP request yields a 404 status, indicating that the content is no longer publicly reachable, and the domain has been taken offline. Infrastructure analysis shows the domain resolves to 31.43.161.6, an address owned by Amazon Web Services (ASN 16509) located in the Netherlands. The SSL certificate is issued by Let’s Encrypt and carries the identifier “E8”, confirming the use of a free, automated certificate.
DNS is served by four AWS name servers (ns-114.awsdns-14.com, ns-1198.awsdns-21.org, ns-1902.awsdns-45.co.uk, ns-635.awsdns). The site was registered on 6 January 2018 through CSC Corporate Domains, Inc., and the registrar information has not changed since creation. Security-vendor scans on VirusTotal report that three of ninety-one AV engines flagged the domain, and three independent blocklists have already listed it. It is also blocked by PhishDestroy, MetaMask, and SEAL, reinforcing the consensus that the domain is malicious. The hosting stack includes Framer Sites, React, HTTP/3, and HSTS, which are typical of modern web applications but do not mitigate the impersonation risk.
Gridinsoft assigns a trust score of 0 / 100, reflecting a highly untrusted reputation. Uncertainty remains regarding the exact payload or credential-harvesting mechanisms, because the site is currently offline and no page capture is available. Defenders should continue to block the domain at perimeter and DNS filters, monitor the associated IP address for any re-use, and add the certificate fingerprint to TLS inspection rules.
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | us-trezor.framer.ai |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Teknologi · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com Keyakinan 100%React is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org Keyakinan 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Keyakinan 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Keyakinan 100%Analisis VirusTotal
Bukti & Laporan Eksternal
PD-20260621-95D544 Recipient: abuse@framer.com Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive