trejr-io-start[.]pages[.]dev
“Official Ledger Start | Secure Setup & Device Activation”
Kanıt özeti
PhishDestroy identifies an active credential-harvesting campaign hosted at trejr-io-start.pages.dev that mimics a Microsoft login portal in order to capture user email addresses and passwords. The domain is deployed on Cloudflare Pages and resolves to IP 172.66.47.3, making it appear legitimate to casual visitors. Attackers use the familiar Microsoft login UI to trick victims into surrendering their credentials, which are then relayed to attacker-controlled servers for abuse. This domain was flagged by PhishDestroy on seed e9dae5; VirusTotal currently shows 0 out of 95 engines detecting the threat, and the site is registered through Cloudflare, Inc. The SSL certificate is issued by Google Trust Services, adding to its deceptive appearance. The campaign remains active and continues to harvest credentials from unsuspecting users who believe they are signing into a Microsoft service. If you visited trejr-io-start.pages.dev and entered any credentials, immediately change your Microsoft account password using a known-good device. Enable multi-factor authentication on your Microsoft account and scan your device for malware. Report the incident to your IT team or Microsoft Security if this was a work account. Avoid reusing the exposed password on other services. Monitor your Microsoft account for any unusual login attempts or unauthorized changes.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 12.08.2026
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
Teknolojiler
3 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of trejr-io-start.pages.dev · checked Apr 24, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin