trezlletzeriyresi[.]webflow[.]io
“Trezor @Wallet | Bitcoin & Crypto Security”
trezlletzeriyresi.webflow.io — Контент недоступен. Олицетворение бренда: Trezor; Тип мошенничества: Brand Impersonation. Сводка доказательств: VirusTotal 19/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLQuery 3 alerts; CF Radar malicious; PhishDestroy score 100/100. Регистратор: Webflow.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
PhishDestroy identifies trezlletzeriyresi.webflow.io as an active crypto drainer impersonating Trezor Wallet, posing a high risk to cryptocurrency users seeking secure storage solutions. This domain mimics the legitimate Trezor Wallet branding to deceive visitors into connecting wallets to fraudulent smart contracts designed to siphon cryptocurrency assets. The campaign leverages social engineering tactics, exploiting trust in well-known hardware wallet brands to trick users into authorizing malicious transactions.
This domain was flagged with a Risk Level: HIGH, SSL certificate issued by Google Trust Services, 16 out of 95 VirusTotal security vendors detecting malicious activity, resolves to IP 172.64.151.8, and displays a page title identical to the legitimate Trezor Wallet branding: 'Trezor @Wallet | Bitcoin & Crypto Security'. The domain is hosted on Webflow’s infrastructure, a legitimate platform often abused for phishing due to its ease of deployment and trustworthiness of associated domains. While specific creation date and registrar details are not provided, the domain remains active and continues to evade blocklists despite multiple detections, indicating ongoing evasion tactics.
Immediate mitigation steps include blocking the domain trezlletzeriyresi.webflow.io at the network and DNS levels to prevent user access. Users should verify any Trezor-related communications by navigating directly to the official Trezor website (trezor.io) via a trusted bookmark or search engine, never through embedded links. Enable hardware wallet transaction confirmation features and review transaction details meticulously before authorizing. Report the domain to security teams, browser vendors, and platforms like Google Safe Browsing or PhishDestroy to accelerate takedown. Educate cryptocurrency users to recognize red flags such as misspelled domains, urgency in requests, and unsolicited wallet connection prompts.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | trezlletzeriyresi.webflow.io |
malicious | Sinkholed |
| OpenDNS | trezlletzeriyresi.webflow.io |
phishing | Phishing Block |
| DNS4EU | trezlletzeriyresi.webflow.io |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 3 identified
Visual website builder with hosted publishing.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of trezlletzeriyresi.webflow.io · checked Apr 19, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание