bridgetrez-app[.]framer[.]ai
“Trezor™ Bridge | Manage Crypto® Safely and Simply”
bridgetrez-app.framer.ai — Контент недоступний. Уособлення бренду: Trezor; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 1 detections (engine total unavailable) (ChainPatrol); URLQuery 1 alert; URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 68/100. Реєстратор: CSC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Bridgetrez-app.framer.ai is a phishing domain that impersonates Trezor, a well-known cryptocurrency wallet provider. The site, now offline, was flagged by 3 out of 95 vendors on VirusTotal, indicating its malicious intent. It was also listed on public blocklists by PhishDestroy, MetaMask, and SEAL. The domain was hosted on an IP associated with Amazon in the Netherlands and was registered through CSC Corporate Domains, Inc.
The phishing site aimed to deceive users into believing they were accessing Trezor's legitimate services, potentially compromising sensitive information like wallet credentials. The page title, "Trezor™ Bridge | Manage Crypto® Safely and Simply," was designed to instill trust and mimic official branding. This tactic is common in phishing operations targeting cryptocurrency users, who are often prime targets due to the high value of digital assets.
Despite being taken down, the domain's initial detection by PhishDestroy on June 22, 2026, underscores the importance of early threat identification. With a platform risk score of 68 out of 100, the domain posed a significant threat during its active period. The relatively low detection rate on VirusTotal highlights the challenge of identifying new phishing sites quickly, as they often exploit the time gap before security databases are updated. PhishDestroy's upstream monitoring helps capture such threats in their nascent stages, providing crucial early warnings.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | bridgetrez-app.framer.ai |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com 100% впевненостіReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Докази та зовнішні звіти
PD-20260622-325810 Recipient: abuse@framer.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога