trezorwalletibq[.]webflow[.]io
“Trezor Wallet| Hardware Wallet (Official) | Bitcoin & Crypto …”
trezorwalletibq.webflow.io — İçerik kullanılamıyor. Marka kimliğine bürünme: Trezor. Kanıt özeti: VirusTotal 16/91 (ChainPatrol, alphaMountain.ai, BitDefender, CyRadar, ESET); URLScan malicious verdict; Spamhaus DBL_ABUSED_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. Kayıt kuruluşu: MarkMonitor.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
This domain, trezorwalletibq.webflow.io, is flagged as a high-risk brand impersonation resource targeting Trezor, a well-known hardware cryptocurrency wallet provider. Analysis indicates the site mimics the official Trezor interface, presenting itself as the legitimate "Trezor Wallet | Hardware Wallet (Official) | Bitcoin & Crypto" portal. The threat type is classified as brand impersonation, likely intended to deceive users into disclosing sensitive credentials or interacting with malicious smart contracts, though no direct crypto drainer kit signatures have been confirmed at this stage. Infrastructure analysis reveals the following technical indicators: the domain resolves to the IP address 172.64.151.8 and was originally created on May 8, 2013, though the subdomain appears to have been repurposed for malicious activity. The domain is registered through MarkMonitor, Inc., a registrar commonly associated with both legitimate and abused infrastructure. Detection metrics show 6 out of 95 security vendors on VirusTotal flagging the domain as malicious. The SSL certificate is issued by Google Trust Services, providing a veneer of legitimacy while obfuscating the underlying threat. No Google Safe Browsing (GSB) blocklist entries were identified at the time of analysis, though this may reflect a lag in propagation rather than absence of risk. As of the latest assessment, trezorwalletibq.webflow.io remains active and accessible, posing an ongoing threat to unsuspecting users. No takedown actions have been observed, and the domain continues to resolve without interruption. Users are advised to exercise extreme caution, verify domain authenticity through official channels, and avoid interacting with any unsolicited prompts or forms. Organizations should consider preemptive blocklisting of the domain and IP to mitigate exposure, while monitoring for related infrastructure that may emerge in subsequent campaigns.
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 3 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of trezorwalletibq.webflow.io · checked Jun 29, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin