trrezorwulat[.]webflow[.]io
“Trezor Wallet: The Gold Standard in Cryptocurrency Security”
trrezorwulat.webflow.io — Contenuto non disponibile. Simulazione del marchio: Trezor; Tipo di truffa: Brand Impersonation. Riepilogo delle prove: VirusTotal 7/91 (ChainPatrol, alphaMountain.ai, Emsisoft, Fortinet, Kaspersky); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 71/100. Registrar: MarkMonitor.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
This domain is classified as a high-risk brand impersonation threat specifically targeting Trezor, a well-known cryptocurrency hardware wallet provider. The site presents itself as an official Trezor Wallet interface, using the page title 'Trezor Wallet: The Gold Standard in Cryptocurrency Security' to deceive users into entering sensitive credentials, recovery seeds, or private keys. Such impersonation attacks are designed to exfiltrate cryptographic assets by exploiting trust in established brands, and this domain exhibits multiple technical indicators confirming its malicious intent. Infrastructure analysis reveals the following concrete evidence: the domain is flagged by 13 out of 95 security vendors on VirusTotal, indicating widespread detection as malicious. It appears on three distinct security blocklists and is actively blocked by cryptocurrency security tools, including MetaMask and PhishDestroy. The domain resolves to the IP address 104.18.36.248 and was registered through MarkMonitor, Inc., a registrar commonly used for both legitimate and fraudulent domains. Notably, the creation date of June 15, 2026, is anomalous, as it predates the current date, suggesting either a typo in registration records or an attempt to manipulate domain age perception. The SSL certificate is issued by Google Trust Services, which, while legitimate, is frequently abused by threat actors to lend false credibility to phishing sites. To mitigate risks associated with this type of brand impersonation, users should verify domain authenticity by cross-referencing official communication channels, such as the vendor’s verified website or support portals. Cryptocurrency wallet users are advised to enable multi-factor authentication and use hardware-based verification methods where available. If credentials or recovery seeds were entered on this domain, immediate action is required, including revoking access to compromised wallets, transferring assets to a secure address, and monitoring for unauthorized transactions. Network administrators should block the domain and its resolving IP address (104.18.36.248) at the firewall or DNS level to prevent internal access. Given the domain’s current offline status, continued monitoring for re-emergence or similar impersonation attempts is recommended.
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Tecnologie · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Confidenza al 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confidenza al 100%Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of trrezorwulat.webflow.io · checked Jun 25, 2026
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo