83ef271f[.]kjdhfhud[.]pages[.]dev
“Trezor Suite”
83ef271f.kjdhfhud.pages.dev — Контент недоступний. Уособлення бренду: Trezor; Тип шахрайства: Seed Phrase Theft. Зведення доказів: VirusTotal 13/93 (BitDefender, CRDF, CyRadar, ESET, Fortinet); URLScan malicious verdict; Google Safe Browsing flagged; PhishDestroy score 89/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, 83ef271f.kjdhfhud.pages.dev, is identified as a high-risk brand impersonation threat targeting Trezor cryptocurrency wallet users. The site mimics the legitimate Trezor Suite interface, designed to harvest login credentials, recovery seeds, or other sensitive authentication details. Infrastructure analysis reveals the domain was configured to exploit trust in the Trezor brand, potentially leading to unauthorized access to digital assets or financial theft. The page title explicitly matches the authentic Trezor Suite, increasing the likelihood of successful deception among unsuspecting users. Evidence supporting this assessment includes multiple technical indicators. The domain is flagged by 13 out of 95 security vendors on VirusTotal, indicating broad consensus among detection engines. It appears on one security blocklist and is blocked by PhishDestroy, further validating its malicious nature. Registered through Cloudflare, Inc., the domain resolves to the IPv6 address 2a06:98c1:3120::3, associated with Cloudflare’s network (AS13335). The SSL certificate, issued by Google Trust Services (WE1), does not mitigate the threat, as encrypted connections are commonly exploited in phishing campaigns to appear legitimate. Google Safe Browsing also flags the domain as phishing, reinforcing its classification as a confirmed threat. Users who visited 83ef271f.kjdhfhud.pages.dev should take immediate action to mitigate potential risks. If any credentials or recovery seeds were entered, assume they are compromised and revoke access to all associated accounts. Rotate passwords, enable multi-factor authentication where available, and monitor accounts for unauthorized transactions. Users should also scan their devices for malware, as phishing sites may deploy additional payloads. Report the incident to relevant security teams or platforms to aid in broader threat mitigation efforts. Given the domain’s current offline status, users should remain vigilant for similar impersonation attempts targeting cryptocurrency services.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of 83ef271f.kjdhfhud.pages.dev · checked Apr 24, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога