tresswallet[.]webflow[.]io
“Trezor Model T | The Most Advanced Hardware Wallet”
Kaydedilmiş gözlem
Gözlemlenen başlık farkı
Kanıt özeti
This domain, tresswallet.webflow.io, operates as a crypto drainer, a specialized form of phishing infrastructure designed to exploit wallet connections on decentralized platforms. Analysis indicates the domain deploys malicious JavaScript to intercept and drain cryptocurrency assets from connected wallets, typically by tricking users into signing transactions that transfer funds to attacker-controlled addresses. The threat is particularly severe due to its direct financial impact, often resulting in irreversible asset loss for victims. Evidence supporting this assessment includes detection by 17 out of 95 security vendors on VirusTotal, indicating a broad consensus on its malicious nature. The domain was registered through MarkMonitor, Inc. on May 08, 2013, though its current malicious use suggests compromise or repurposing of existing infrastructure. It appears on four independent security blocklists, including those maintained by wallet security providers and domain reputation services. The domain resolves to the IP address 104.18.36.248, a Cloudflare-associated address, which is commonly used to obfuscate the true origin of malicious traffic. Users who interacted with tresswallet.webflow.io should immediately revoke any wallet connections or permissions granted to the domain. All active sessions should be terminated, and any transactions signed during the interaction period should be reviewed for unauthorized transfers. It is recommended to transfer remaining assets to a new wallet address and monitor connected accounts for suspicious activity. If credentials or recovery phrases were entered, assume full compromise and initiate account recovery procedures with the respective wallet provider. No further interaction with the domain should occur, even if it appears inactive, as it may reactivate or redirect to other malicious endpoints.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
Tespit zaman çizelgesi
-
VirusTotal
14 → 17
Teknolojiler
2 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of tresswallet.webflow.io · checked Jun 25, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin