bcg-tresor-bridge[.]pages[.]dev
“Trezor Bridge — New Different Logo Styles”
bcg-tresor-bridge.pages.dev — Conteúdo indisponível. Representação da marca: Trezor; Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 12/94 (ADMINUSLabs, BitDefender, Chong Lua Dao, CyRadar, ESET); URLScan malicious verdict; PhishDestroy score 91/100. Registrador: Cloudflare.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
PhishDestroy identifies bcg-tresor-bridge.pages.dev as a high-risk domain engaged in active brand impersonation targeting the Trezor cryptocurrency wallet ecosystem. This fraudulent page leverages a spoofed Trezor Bridge interface to deceive users into downloading counterfeit software or divulging sensitive credentials. The attack employs a convincing Trezor-themed visual design, including a fabricated page title—'Trezor Bridge — New Different Logo Styles'—to lend false legitimacy to the phishing lure. While no custom drainer kit has been confirmed in this instance, the page’s structure suggests it may redirect victims to a secondary payload designed for credential theft or cryptocurrency fund siphoning. This domain resolves to IP address 172.66.46.236 and operates under a Google Trust Services SSL certificate, likely to evade browser-based warnings. Registered via Cloudflare, Inc., it currently remains active despite minimal detection coverage, with only 1 out of 95 VirusTotal security vendors flagging the URL as malicious. The domain’s recent creation date and use of a trusted certificate authority underscore the sophistication of this impersonation campaign. Notably, it has not yet been flagged by Google Safe Browsing (GSB), and its presence on public blocklists remains limited, increasing its potential reach among unsuspecting users. At present, bcg-tresor-bridge.pages.dev continues to operate undetected, posing an ongoing risk to Trezor users and cryptocurrency holders. Immediate response actions include updating network blocklists, flagging the domain in DNS filtering systems, and issuing user advisories to avoid interacting with the page. Remaining risk factors include the domain’s active status, lack of widespread detection, and the likelihood of further refinement to evade security measures. Organizations are advised to monitor for related infrastructure, block the IP and domain at the perimeter, and educate users on verifying official Trezor channels before downloading software or entering credentials.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of bcg-tresor-bridge.pages.dev · checked Apr 13, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo