webpagetrezo[.]ghost[.]io
“Trezor Suite (Official)* | Desktop & Web Crypto Management”
webpagetrezo.ghost.io — Non verificato. Simulazione del marchio: Trezor; Tipo di truffa: Crypto Scam. Riepilogo delle prove: VirusTotal 4/91 (alphaMountain.ai, Fortinet, Gridinsoft, Webroot); URLQuery 100 det.; URLScan malicious verdict; PhishDestroy score 95/100. Registrar: 1API.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
The domain webpagetrezo.ghost.io has been identified as a brand impersonation threat targeting Trezor, a well-known cryptocurrency hardware wallet. The threat poses a significant risk by mimicking the official Trezor Suite webpage, potentially leading to the compromise of user credentials and sensitive information.
Analysis indicates that webpagetrezo.ghost.io has a VirusTotal score of 6/95, suggesting that it is flagged by a notable number of security vendors. The domain was registered through 1API GmbH on October 01, 2011, and resolves to the IP address 151.101.131.7. The site uses an SSL certificate issued by Let's Encrypt, which is a common choice for legitimate and malicious sites alike. It appears on one security blocklist and has a Gridinsoft trust score of 0/100, indicating a complete lack of trustworthiness. The technologies detected on the site include Varnish, Nginx, and OpenResty, which are often used to enhance the performance and reliability of web applications.
The current status of the domain is offline, which suggests that it has been taken down or is no longer actively hosted. Despite this, the threat posed by the domain remains elevated due to its potential to deceive users who may still attempt to access it. Security measures such as blocking the domain through PhishDestroy and other security solutions are recommended to mitigate the risk. Users are advised to verify the URL and SSL certificate of the official Trezor site and to report any suspicious activity to their security teams. The remaining risk is considered moderate, as the domain could be reactivated or repurposed for future attacks.
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Tecnologie · 3 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Web platform based on Nginx with LuaJIT for scalable web apps.
Analisi di VirusTotal
Prove archiviate
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of webpagetrezo.ghost.io · checked Jun 27, 2026
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo