shuite-trezer--ask[.]framer[.]ai
“Trezor Suite | Official Crypto Management App”
shuite-trezer--ask.framer.ai — İçerik kullanılamıyor. Marka kimliğine bürünme: Trezor; Dolandırıcılık türü: Brand Impersonation. Kanıt özeti: VirusTotal 14/91 (ChainPatrol, alphaMountain.ai, Chong Lua Dao, CyRadar, Emsisoft); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 92/100. Kayıt kuruluşu: CSC.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
This domain is flagged as a high-risk brand impersonation threat specifically targeting Trezor, a cryptocurrency hardware wallet provider. Analysis indicates the infrastructure is designed to deceive users into believing they are interacting with the official Trezor Suite application, potentially leading to unauthorized access to crypto assets or credential theft. The domain presents a significant risk due to its active status and targeted deception of cryptocurrency users. Infrastructure analysis reveals the domain shuite-trezer--ask.framer.ai was registered on January 06, 2018, through CSC Corporate Domains, Inc. It currently resolves to the IP address 31.43.161.6. The page title mimics the official Trezor Suite application, displaying "Trezor Suite | Official Crypto Management App." VirusTotal reports 3 out of 95 security vendors have flagged this domain as malicious, indicating partial detection but persistent risk. The domain remains active, and its SSL certificate is issued by Let's Encrypt, which does not inherently validate legitimacy but provides encrypted connections often exploited in phishing campaigns. Mitigation steps for this brand impersonation threat include immediate blocking of the domain and associated IP address (31.43.161.6) at the network perimeter. Organizations and users should verify the authenticity of any Trezor-related communications or applications by cross-referencing with the official Trezor website (trezor.io) and avoiding interaction with unofficial domains. Security teams are advised to monitor for indicators of compromise, such as unexpected redirects or requests for wallet credentials, and to educate users on recognizing brand impersonation tactics. Proactive monitoring of newly registered domains with similar naming patterns is recommended to preempt further threats.
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com %100 güvenReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org %100 güvenHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Arşivlenmiş Kanıtlar
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of shuite-trezer--ask.framer.ai · checked Jun 26, 2026
Kanıtlar ve Dış Raporlar
PD-20260626-4AC5E2 Recipient: abuse@framer.com Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin