io-trezo-bridge[.]pages[.]dev
“tnamp.d1zbww9y4cvvrf.amplifyapp.com”
io-trezo-bridge.pages.dev — Não verificado. Tipo de golpe: Crypto Scam. Resumo das evidências: VirusTotal 1/91 (LevelBlue); PhishDestroy score 76/100. Registrador: Cloudflare.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, io-trezo-bridge.pages.dev, is identified as an active cryptocurrency wallet phishing site targeting users of the Trezor hardware wallet. Analysis indicates the domain is designed to harvest sensitive credentials, including private keys, recovery phrases, and wallet login details, under the guise of a legitimate bridge or authentication service. The domain remains operational as of the latest verification and poses a high risk to individuals interacting with cryptocurrency storage solutions. Infrastructure analysis reveals the domain was registered through Cloudflare, Inc. on September 03, 2025, and resolves to the IP address 188.114.96.3, associated with AS13335 (Cloudflare, Inc.) in the United States. The SSL certificate is issued by Google Trust Services (WE1), a common feature in both legitimate and malicious domains. Security telemetry shows the domain is flagged by 1 of 95 vendors on VirusTotal, while appearing on three independent security blocklists. Additional technical indicators include the page title tnamp.d1zbww9y4cvvrf.amplifyapp.com, suggesting a possible link to a compromised or misconfigured subdomain used to host phishing content. Current status confirms the domain remains active and continues to serve phishing content. Organizations and individuals are advised to block access to io-trezo-bridge.pages.dev at the network level and update endpoint protection rules to include this domain. Users who may have interacted with the site should immediately revoke any permissions granted, rotate all credentials, and transfer assets to a new wallet. Monitoring for unauthorized transactions and enabling multi-factor authentication on all related accounts is strongly recommended. Security teams should treat this domain as a high-priority threat and include it in threat intelligence feeds for proactive defense.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
Análise do VirusTotal
Evidências arquivadas
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo