trazor-brizey[.]pages[.]dev
“Trezor Bridge | Download & Install for Secure Wallet Access”
trazor-brizey.pages.dev — Conteúdo indisponível. Representação da marca: Trezor; Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 2/94 (ADMINUSLabs, Kaspersky); URLQuery 1 alert; URLScan malicious verdict; PhishDestroy score 61/100. Registrador: Cloudflare.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
PhishDestroy identifies trazor-brizey.pages.dev as an active crypto drainer under investigation for brand impersonation tactics. The domain leverages a Google Trust Services SSL certificate to appear legitimate while hosting a JavaScript-based wallet drainer kit designed to siphon cryptocurrency from unsuspecting victims. Analysis of the drainer payload reveals obfuscated code that monitors clipboard activity and replaces crypto wallet addresses with attacker-controlled addresses, a common tactic in crypto-draining operations. No direct affiliation with known brands was detected in the payload, suggesting a standalone operation rather than a targeted brand impersonation campaign.
This domain was flagged with the following technical indicators: VirusTotal detection score of 2/95 (undetectable by security vendors as of analysis), registered through Cloudflare, Inc., resolving to IP 188.114.96.3, and utilizing a Google Trust Services SSL certificate. The domain's creation date remains unverified due to Cloudflare's privacy protections, but it has been active for a minimum of 7 days as per seed data. Google Safe Browsing (GSB) has not yet flagged this domain, and the domain does not appear on any major blocklists at the time of analysis. The lack of detections despite active malicious hosting suggests either a newly launched campaign or the use of advanced evasion techniques.
The current status of trazor-brizey.pages.dev is active and under investigation by fraud detection teams. Immediate response actions include blacklisting the IP 188.114.96.3 at the network level and submitting the domain to Google Safe Browsing for urgent review. Users are advised to avoid interacting with this domain, particularly when prompted to connect cryptocurrency wallets or enter private keys. Remaining risk is assessed as HIGH due to the domain's active hosting of drainer malware and zero vendor detections, indicating a potential for widespread victimization before takedown. Proactive measures such as wallet address verification and the use of hardware wallets for transactions are strongly recommended to mitigate exposure to crypto drainer attacks.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | trazor-brizey.pages.dev |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% de confiançaAnálise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of trazor-brizey.pages.dev · checked Apr 24, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo