auth-trezor-wallet-us[.]square[.]site
“Trezor Wallet Review 2025 – Features, Fees, How it | auth-trezor-wallet-us”
auth-trezor-wallet-us.square.site — İçerik kullanılamıyor. Marka kimliğine bürünme: Trezor; Dolandırıcılık türü: Brand Impersonation. Kanıt özeti: VirusTotal 4/91 (ChainPatrol, alphaMountain.ai, Kaspersky, PhishFort); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 66/100. Kayıt kuruluşu: MarkMonitor.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
auth-trezor-wallet-us.square.site is a fraudulent domain designed to impersonate the legitimate Trezor cryptocurrency wallet service. This specific threat involves brand impersonation, where attackers mimic Trezor's branding and interface to deceive users into entering sensitive information such as wallet credentials, recovery phrases, or private keys. The page title 'Trezor Wallet Review 2025 – Features, Fees, How it' suggests a fake review page intended to appear trustworthy, while the subdomain 'auth-trezor-wallet-us' implies an authentication portal, further luring victims into a false sense of security.
Evidence from security analysis shows that VirusTotal flagged this domain with 4 out of 95 security vendors marking it as malicious, indicating moderate but concerning detection rates. The domain was registered on June 15, 2026 through MarkMonitor Inc., a reputable registrar, which may have delayed takedown actions. It appears on three security blocklists and resolves to IP address 74.115.51.4. The SSL certificate was issued by Let's Encrypt with identifier E8, a common choice for phishing sites due to its free and automated issuance. Fortunately, the site is currently marked as offline, suggesting it has been taken down following reports.
If users visited this domain, they should immediately change any passwords they may have entered and enable two-factor authentication on their Trezor accounts and associated email addresses. They should also monitor for unauthorized transactions or account access, and consider contacting Trezor support for further guidance. Running a security scan on their devices is recommended to check for malware or credential stealers. Users should always verify the authenticity of Trezor-related websites by navigating directly from the official Trezor website or using bookmarks, and avoid clicking on links from unsolicited emails or messages.
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
ICANN OVERSIGHT
Registration: square.site
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For the registrable domain square.site behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler · 7 identified
Vue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org %100 güvenreCAPTCHA is a free service from Google that helps protect websites from spam and abuse.
www.google.com %100 güvenHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org %100 güvenCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com %100 güvenVirusTotal Analizi
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin