supports-trzro-eng[.]pages[.]dev
“Suspected Phishing | Cloudflare”
supports-trzro-eng.pages.dev — Контент недоступен. Олицетворение бренда: Trezor. Сводка доказательств: VirusTotal 11/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLScan malicious verdict; PhishDestroy score 93/100. Регистратор: Cloudflare.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis conducted on July 29, 2026 examines the domain supports-trzro-eng.pages.dev, which is currently classified as a generic phishing site with elevated risk. The domain resolves to the IP address 188.114.97.3 and is hosted behind Cloudflare’s infrastructure; registration is listed under Cloudflare, Inc., and the authoritative name servers are lee.ns.cloudflare.com and monroe.ns.cloudflare.com. VirusTotal has recorded detections from 11 of 91 scanning engines, indicating that a notable minority of security products identify malicious behavior associated with the domain.
Additionally, the domain appears on a single external blocklist and has been flagged by the PhishDestroy blocklist service, reinforcing the consensus that it is being used for malicious purposes. Publicly available intelligence does not include a page title, SSL certificate details, or explicit indications of the targeted brand or scam kit, so the exact content served by the site remains unverified. The lack of visible branding or a described lure means that defenders cannot rely on visual cues to confirm the phishing vector, but the combined technical indicators—malicious detections, blocklist presence, and hosting under a shared-service provider—justify continued monitoring.
Organizations should block DNS resolution to supports-trzro-eng.pages.dev at the network perimeter, add the domain to URL filtering rules, and ensure endpoint security solutions are updated to include the 11 vendor detections reported by VirusTotal. Ongoing reconnaissance should track any changes to the IP address, name-server configuration, or additional blocklist listings that could signal a shift in the threat actor’s infrastructure.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
Технологии · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of supports-trzro-eng.pages.dev · checked Jul 29, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание