un-treezor-io[.]pages[.]dev
“Trezor Suite App: Secure Cryptocurrency Management”
un-treezor-io.pages.dev — Não verificado. Representação da marca: Trezor; Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 11/91 (alphaMountain.ai, BitDefender, CyRadar, ESET, Fortinet); PhishDestroy score 83/100. Registrador: Cloudflare Pages.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, un-treezor-io.pages.dev, is flagged as an active brand impersonation threat targeting Trezor, a cryptocurrency hardware wallet provider. Analysis indicates the site presents itself as the legitimate Trezor Suite App under the page title 'Trezor Suite App: Secure Cryptocurrency Management,' designed to deceive users into entering sensitive credentials or wallet recovery phrases. No drainer kit signatures have been identified yet, but the infrastructure aligns with known phishing patterns for cryptocurrency theft. Infrastructure analysis reveals the domain was registered on April 1, 2026, through Cloudflare Pages and resolves to the IP address 172.66.44.150, hosted by Cloudflare, Inc. in Canada. The SSL certificate is issued by Google Trust Services (WE1), a common configuration for malicious sites leveraging legitimate CDN infrastructure. VirusTotal reports zero detections out of 95 engines, indicating the site has not yet been widely flagged. However, it appears on one security blocklist and is currently blocked by PhishDestroy. Google Safe Browsing status is not explicitly listed, but the domain's active impersonation of a trusted brand warrants caution. The domain remains active as of this report, posing a continued risk to users who may mistake it for the legitimate Trezor platform. Response actions should include immediate blacklisting, DNS sinkholing, and monitoring for credential harvesting or wallet-draining activity. Despite the low detection rate, the combination of brand impersonation, recent registration, and Cloudflare-hosted infrastructure confirms malicious intent. Users are advised to verify domain authenticity via official sources and avoid interacting with any unsolicited cryptocurrency management pages.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of un-treezor-io.pages.dev · checked Apr 2, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo