bridg--trzor[.]pages[.]dev
“Trezor Bridge — Secure Your Hardware Wallet®”
Збережене спостереження
Зафіксована відмінність заголовків
Зведення доказів
PhishDestroy identifies bridg--trzor.pages.dev as an active generic phishing domain masquerading as a cryptocurrency wallet service. The domain employs a double-hyphen obfuscation technique ('bridg--trzor') to mimic the legitimate 'Bridge' protocol branding, targeting users seeking crypto wallet services. No specific drainer kit or cloned assets were observed in the current analysis, suggesting a preliminary phishing setup likely aimed at credential harvesting or cryptocurrency theft.
This domain resolves to IP 172.66.47.125 and is registered through Cloudflare, Inc., leveraging Google Trust Services for its SSL certificate. VirusTotal currently shows 2/95 detections, indicating evasion against signature-based detection systems. The domain is newly registered under Cloudflare’s Pages.dev platform, with no historical data available, and remains unlisted on Google Safe Browsing (GSB) and major blocklists as of this investigation. The risk level is marked as under_investigation due to limited telemetry and the absence of established threat actor fingerprints.
The domain remains active with no confirmed takedown or blocklist mitigation at this time. Users are advised to exercise extreme caution when encountering pages.dev subdomains promoting cryptocurrency services, especially those with obfuscated naming conventions. Immediate defensive actions include network-level blocking of the IP (172.66.47.125) and domain (bridg--trzor.pages.dev), alongside user awareness campaigns highlighting the risks of fake wallet phishing campaigns. Remaining risk is elevated due to the lack of detection signatures and the potential for rapid propagation across social engineering vectors. Regular re-evaluation of threat intelligence is recommended as this campaign matures.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 12.08.2026
Повідомлення спільноти
Повідомив 1 учасник спільноти; уперше помічено 30.04.2026
- Збережені повідомлення
- 1
- Унікальні URL
- 1
Дані спільноти
1 повідомлення спільноти
КатегоріяPHISHING
The PhishFort Detection System has flagged this as a domain threat, classified as phishing. Associated tags: subdomain, typosquat. Threat detected at 2026-05-01T07:26:21.378Z.
Технології
Виявлено 3 технології з високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of bridg--trzor.pages.dev · checked Apr 30, 2026
Схожі домени
Збережено 74 схожі домени
Показати всі (62)
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога