en-us-trzersuite[.]pages[.]dev
“Trezor Suite App — Secure & Modern Crypto Management”
en-us-trzersuite.pages.dev — Conteúdo indisponível. Representação da marca: Trezor; Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 8/94 (BitDefender, CyRadar, Fortinet, G-Data, Kaspersky); URLScan malicious verdict; PhishDestroy score 79/100. Registrador: Cloudflare.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
PhishDestroy identifies en-us-trzersuite.pages.dev as an active brand impersonation phishing domain leveraging a deceptive subdomain to mimic legitimate services. The infrastructure suggests intent to harvest credentials or deliver malicious payloads under the guise of a trusted brand, though the specific impersonated entity remains unverified in open-source intelligence. Hosted via Cloudflare Pages, the domain employs a generic naming pattern ('en-us-trzersuite') to appear localized or service-oriented, increasing the likelihood of user trust exploitation.
Technical indicators confirm this domain resolves to IP 172.66.47.88 (Cloudflare ASN 13335) and utilizes a Google Trust Services SSL certificate for HTTPS obfuscation. VirusTotal currently reports 8/95 detections (0% detection rate) as of seed 3f66b7, with no flags in Google Safe Browsing or major threat intelligence feeds. Additional forensic data includes registration through Cloudflare, Inc., though the creation date is obscured by Cloudflare’s privacy protections. The absence of blocklist detections indicates either a recently deployed campaign or evasion tactics such as rapid infrastructure rotation.
This domain remains in status 'active' and under investigation, with no immediate mitigation by default security controls. Users are advised to treat all interactions with extreme caution, particularly submissions of credentials or cryptocurrency transactions. PhishDestroy recommends blocking en-us-trzersuite.pages.dev at network and endpoint levels, reporting to threat intelligence platforms, and validating any suspected impersonation through official brand channels. Remaining risk is assessed as elevated due to active hosting, unflagged status, and potential for credential theft or crypto drainer deployment.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of en-us-trzersuite.pages.dev · checked Apr 11, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo