tzr-jern[.]maxwell15[.]workers[.]dev
“Suspected Phishing | Cloudflare”
tzr-jern.maxwell15.workers.dev — 확인되지 않음. 브랜드 사칭: Trezor; 사기 유형: Seed Phrase Theft. 증거 요약: VirusTotal 13/91 (alphaMountain.ai, BitDefender, ESET, Forcepoint ThreatSeeker, Fortinet); URLScan malicious verdict; 3 external blocklist matches (MetaMask, OpenPhish, SEAL); PhishDestroy score 89/100. 등록기관: Cloudflare.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
tzr-jern.maxwell15.workers.dev is a tenant hostname on Cloudflare, not a separately registered domain. PhishDestroy first observed the hostname on Aug 13, 2026. Stored content metadata identifies Trezor as the apparent target. The captured page title is “Suspected Phishing | Cloudflare”. Stored page analysis classifies the content as seed phrase theft. Current evidence score: 89/100 (critical).
Positive findings are stored from 5 sources: VirusTotal, MetaMask, OpenPhish, SEAL, and URLScan. VirusTotal recorded 13 detections among 91 engines: alphaMountain.ai, BitDefender, ESET, Forcepoint ThreatSeeker, Fortinet, G-Data, Gridinsoft, Kaspersky, Lionic, OpenPhish, PhishFort, Sophos, VIPRE on Aug 14, 2026 at 02:46 UTC. MetaMask, OpenPhish, and SEAL listed the hostname in the separate external-blocklist snapshot on Aug 14, 2026 at 06:20 UTC. URLScan returned a malicious verdict with score 100; scan metadata linked the capture to Trezor and assigned phishing as its category on Aug 13, 2026 at 23:08 UTC. Non-positive and contextual checks: Google Safe Browsing returned no flag on Aug 14, 2026 at 02:46 UTC.
The collector marked the hostname reachable on Aug 13, 2026 at 19:40 UTC, but did not retain the HTTP response code. Cloudflare is the hosting platform for this tenant, not its registrar. At collection time, the hostname resolved to 172.67.215.70 on AS13335 (CLOUDFLARENET - Cloudflare, Inc., US). The IP and ASN identify shared Cloudflare infrastructure, not the tenant operator. DOM analysis on Aug 13, 2026 at 22:22 UTC returned 0/100; the source detections above were recorded separately. The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and Cloudflare Radar. The platform TLS certificate was issued by Google Trust Services with validity through Sep 28, 2026; checked Aug 13, 2026 at 22:02 UTC.
The content indicators and 5 positive source findings support the current Trezor-themed seed phrase theft classification.
위협 대응 Pipeline
공개 차단 목록 상태
사용 기술 · 5 identified
Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 신뢰도 100%jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 신뢰도 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 신뢰도 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 신뢰도 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 신뢰도 100%VirusTotal 분석
사이트 성능 분석
Google PageSpeed Insights — mobile performance audit of tzr-jern.maxwell15.workers.dev · checked Aug 13, 2026
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.