trezor-access[.]vercel[.]app
“Trézor.io/Start® | Starting Up Your Device - Trézor®”
Сохранённое обнаружение
Обнаружена маскировка
- Тип маскировки
status_split- Оценка маскировки
- 1/6
Сводка доказательств
This domain, trezor-access.vercel.app, is flagged as a high-risk brand_impersonation threat targeting Trezor, a cryptocurrency hardware wallet provider. The phishing page mimics the official Trezor device initialization process, presenting a page title of 'Trézor.io/Start® | Starting Up Your Device - Trézor®' to deceive users into entering sensitive credentials or recovery phrases. No direct evidence of a drainer kit was observed, but the infrastructure aligns with common cryptocurrency phishing campaigns designed to harvest wallet access details. Analysis indicates the domain was registered on March 06, 2026, through Vercel Inc. and resolves to the IP address 216.198.79.195, hosted on Amazon.com, Inc. infrastructure (AS16509). VirusTotal reports 21 out of 95 security vendors detecting the domain as malicious. The domain appears on three security blocklists and is actively blocked by at least three major security providers. The SSL certificate is issued by Google Trust Services under the WR1 intermediate, a common configuration for Vercel-hosted domains. No Google Safe Browsing (GSB) listing was confirmed at the time of analysis. As of the latest verification, trezor-access.vercel.app remains active and continues to pose a significant risk to users attempting to initialize Trezor devices. Immediate response actions include blacklisting the domain across security platforms, revoking SSL certificates where feasible, and notifying the hosting provider for takedown. Despite these measures, the domain may persist due to rapid deployment tactics. Users are advised to verify domain authenticity by cross-referencing official documentation and avoiding interaction with unverified setup pages. Organizations should update blocklists and monitor for similar impersonation attempts targeting cryptocurrency brands.
Data Coverage
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | trezor-access.vercel.app |
malicious | Sinkholed |
| OpenDNS | trezor-access.vercel.app |
phishing | Phishing Block |
| DNS4EU | trezor-access.vercel.app |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
8 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
VirusTotal
0 → 21
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of trezor-access.vercel.app · checked Mar 26, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание