webapp[.]ghost[.]io
“Connect & Unlock”
Resumo das evidências
PhishDestroy has identified webapp.ghost.io as a high-risk domain actively impersonating the Trezor brand. The specific threat is a crypto drainer façade, where the site presents a fake login page titled 'Connect & Unlock' designed to trick users into connecting their hardware wallets and surrendering private keys. This is not a simple spam site but a targeted phishing operation aimed at cryptocurrency holders.
Technical indicators are alarming. The domain resolves to IP 98.84.224.111 and was registered through 1API GmbH on October 01, 2011, giving it an aged appearance that may bypass some automated checks. VirusTotal reports 11 out of 95 security vendors flagging this domain, and it appears on seven blocklists. The SSL certificate is issued by Let's Encrypt (R12), which is common among legitimate sites but also abused by phishers. Despite being taken offline, the domain's history and infrastructure suggest a coordinated threat.
Users who may have visited this site should immediately check for unauthorized transactions and revoke any permissions granted. The safest mitigation is to always verify official Trezor wallet URLs directly from the company's website and never enter seed phrases or confirm transactions on unfamiliar domains. PhishDestroy recommends using a hardware wallet with a separate browser for sensitive actions and enabling two-factor authentication on all crypto accounts. For further verification, users can search the domain on PhishDestroy's database to confirm its malicious status.
Data Coverage
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 11/08/2026
7 fontes externas monitoradas Sem correspondência
Linha do tempo de detecção
-
Cloudflare Radar
Varredura do Cloudflare Radar armazenada · Abrir varredura
-
VirusTotal
11 → 9
-
VirusTotal
9 → 10
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of webapp.ghost.io · checked Mar 2, 2026
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo