trez-suitee[.]pages[.]dev
“Trezor Suite | Best Hardware Wallet for Cold Crypto Storage (2025)”
Observação armazenada
Contraste de títulos observado
Resumo das evidências
PhishDestroy’s threat intelligence team has flagged trez-suitee.pages.dev as an active crypto drainer phishing domain under investigation. This domain mimics legitimate cryptocurrency tools—specifically targeting users by impersonating the Trezor Suite interface to siphon funds from unsuspecting victims. Upon analysis, the domain was found to resolve to IP address 188.114.97.3, a Cloudflare-hosted endpoint leveraging a Google Trust Services SSL certificate to appear legitimate. Notably, despite hosting malicious infrastructure, the domain has not yet been flagged by VirusTotal, registering 0 detections out of 95 scanners as of the latest scan. This low detection rate suggests either evasion tactics or a recent deployment, warranting immediate attention from security teams and users alike. The domain was registered through Cloudflare, Inc., a common choice for threat actors seeking anonymity and rapid deployment. While the exact creation date is not disclosed in available records, the lack of detections and active SSL certificate implies a recent go-live, likely within the last 30 days. Given its infrastructure alignment with known crypto drainer campaigns, the risk level is currently classified as active and under investigation, with potential for escalation as threat intelligence evolves. The absence of blocklist entries further underscores the urgency for proactive blocking, as traditional security controls may not yet recognize the threat. Users who have accessed trez-suitee.pages.dev should immediately cease any interaction with the site and revoke any permissions granted to cryptocurrency wallets or extensions linked to this domain. Conduct a full audit of wallet extensions, browser profiles, and transaction histories for signs of unauthorized transfers. If any funds have been drained, report the incident to local cybercrime units and the platform’s fraud team with screenshots and transaction IDs. To mitigate future exposure, block the domain and IP address 188.114.97.3 at the network perimeter, and update endpoint detection rules to flag similar Cloudflare-hosted crypto drainer campaigns. For ongoing monitoring, enable transaction alerts on all cryptocurrency accounts and avoid interacting with unsolicited links claiming to offer Trezor Suite services.
Data Coverage
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 12/08/2026
10 fontes externas monitoradas Sem correspondência
Inteligência forense
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of trez-suitee.pages.dev · checked Mar 25, 2026
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo