app-suits-trez[.]pages[.]dev
“Trezor Suite | Secure Crypto Management App — Presentation”
Збережене спостереження
Зафіксована відмінність заголовків
Зведення доказів
The domain app-suits-trez.pages.dev has been identified as a confirmed brand impersonation phishing site targeting Trezor, a cryptocurrency hardware wallet provider. Analysis indicates the domain was designed to mimic the official Trezor Suite interface, likely to harvest credentials or distribute malicious payloads under the guise of a legitimate crypto management application. The page title, 'Trezor Suite | Secure Crypto Management App — Presentation,' reinforces the deception by closely mirroring the branding of the authentic service. As of the latest assessment, the domain has been taken offline, though prior activity remains a concern for historical exposure. Technical indicators confirm the malicious nature of this domain. VirusTotal analysis reveals that 6 of 95 security vendors flagged app-suits-trez.pages.dev as malicious, while Gridinsoft assigned a trust score of 0 out of 100. The domain resolves to the IP address 172.66.47.131 and appears on one security blocklist. Infrastructure analysis shows the domain was registered on April 4, 2026, through Cloudflare, Inc., and utilized an SSL certificate issued by Google Trust Services. The use of Cloudflare infrastructure is consistent with threat actor tactics to obfuscate hosting origins and evade detection. Current status indicates the domain has been rendered inactive, though residual risk persists for users who may have interacted with it during its operational window. Organizations and individuals are advised to block the domain and its associated IP (172.66.47.131) at the network perimeter. Users who accessed the site should assume potential credential exposure and initiate password resets for any accounts linked to Trezor or related crypto services. Monitoring for anomalous login attempts or unauthorized transactions is strongly recommended. Security teams should review logs for connections to the domain or IP to identify compromised endpoints and conduct remediation as necessary.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
VirusTotal
6 → 0
Повідомлення спільноти
Повідомив 1 учасник спільноти; уперше помічено 04.04.2026
- Збережені повідомлення
- 1
- Унікальні URL
- 1
Дані спільноти
1 повідомлення спільноти
КатегоріяPHISHING
The PhishFort Detection System has flagged this as a domain threat, classified as phishing. Associated tags: subdomain, typosquat. Threat detected at 2026-04-13T12:45:17.006Z.
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of app-suits-trez.pages.dev · checked Jun 26, 2026
Схожі домени
Збережено 74 схожі домени
Показати всі (62)
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога