trezorhardwarewallet-nsv[.]pages[.]dev
“Trezor Hardware Wallet – Safe, Offline Crypto Protection”
Kanıt özeti
Analysis shows the domain trezorhardwarewallet-nsv.pages.dev was registered on 21 February 2026 and immediately hosted on Cloudflare infrastructure (AS13335) with the IP address 172.66.44.95 located in the United States. The site presents the page title “Trezor Hardware Wallet – Safe, Offline Crypto Protection”, openly claiming to represent the Trezor brand, which aligns with the classified scam type of a crypto‑related brand impersonation. The TLS certificate is issued by Google Trust Services under the WE1 root, confirming that HTTPS termination is performed by Cloudflare’s edge. HTTP responses return a 403 status, indicating the content is currently inaccessible, and the domain has been taken offline after detection.
Infrastructure fingerprints reveal the presence of HSTS, Cloudflare’s HTTP/3 support, and the authoritative nameservers liv.ns.cloudflare.com and yisroel.ns.cloudflare.com. Reputation metrics are uniformly negative: Gridinsoft assigns a trust score of 0 / 100, Scamadviser a score of 1 / 100, and the domain appears on at least one public security blocklist. VirusTotal scans show 15 of 93 antivirus engines flag the domain as malicious, reinforcing the suspicion of a phishing campaign. The domain was also listed by the anti‑phishing service PhishDestroy.
While the exact payload or credential‑collection mechanism cannot be confirmed without a live page snapshot, the convergence of brand impersonation, low trust scores, and multiple vendor detections strongly suggests an active crypto‑scam infrastructure. Defenders should block the domain at network perimeter, add the associated IP address to deny‑lists, monitor for any DNS queries to the listed nameservers, and update threat‑intelligence feeds with the observed indicators. Ongoing observation is recommended to capture any re‑hosting attempts that might bypass the current Cloudflare registration.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 13.08.2026
Tespit zaman çizelgesi
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
-
Alan adı durumu
Erişilebilir → Erişilemiyor
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
Adli İstihbarat
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of trezorhardwarewallet-nsv.pages.dev · checked Mar 2, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin