83ef271f[.]kjdhfhud[.]pages[.]dev
“Trezor Suite”
Riepilogo delle prove
This domain, 83ef271f.kjdhfhud.pages.dev, is identified as a high-risk brand impersonation threat targeting Trezor cryptocurrency wallet users. The site mimics the legitimate Trezor Suite interface, designed to harvest login credentials, recovery seeds, or other sensitive authentication details. Infrastructure analysis reveals the domain was configured to exploit trust in the Trezor brand, potentially leading to unauthorized access to digital assets or financial theft. The page title explicitly matches the authentic Trezor Suite, increasing the likelihood of successful deception among unsuspecting users. Evidence supporting this assessment includes multiple technical indicators. The domain is flagged by 13 out of 95 security vendors on VirusTotal, indicating broad consensus among detection engines. It appears on one security blocklist and is blocked by PhishDestroy, further validating its malicious nature. Registered through Cloudflare, Inc., the domain resolves to the IPv6 address 2a06:98c1:3120::3, associated with Cloudflare’s network (AS13335). The SSL certificate, issued by Google Trust Services (WE1), does not mitigate the threat, as encrypted connections are commonly exploited in phishing campaigns to appear legitimate. Google Safe Browsing also flags the domain as phishing, reinforcing its classification as a confirmed threat. Users who visited 83ef271f.kjdhfhud.pages.dev should take immediate action to mitigate potential risks. If any credentials or recovery seeds were entered, assume they are compromised and revoke access to all associated accounts. Rotate passwords, enable multi-factor authentication where available, and monitor accounts for unauthorized transactions. Users should also scan their devices for malware, as phishing sites may deploy additional payloads. Report the incident to relevant security teams or platforms to aid in broader threat mitigation efforts. Given the domain’s current offline status, users should remain vigilant for similar impersonation attempts targeting cryptocurrency services.
Data Coverage
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 13/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Cronologia del rilevamento
-
Stato del dominio
Raggiungibile → Non raggiungibile
-
Cloudflare Radar
Scansione Cloudflare Radar archiviata · Apri scansione
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of 83ef271f.kjdhfhud.pages.dev · checked Apr 24, 2026
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo