learn-tzrr-suite[.]pages[.]dev
“Trezor Suite – Manage Your Crypto Securely”
Збережене спостереження
Зафіксована відмінність заголовків
Зведення доказів
The domain learn-tzrr-suite.pages.dev is currently active and engaged in brand impersonation targeting Trezor, a cryptocurrency hardware wallet provider. Analysis indicates this infrastructure is designed to facilitate crypto drainer attacks, where victims are tricked into connecting wallets to malicious smart contracts, resulting in unauthorized fund transfers. The domain remains operational and poses a high risk to users seeking legitimate Trezor Suite software. Infrastructure analysis reveals the domain was registered through Cloudflare, Inc., and resolves to the IP address 172.66.47.78. Despite its malicious intent, the domain has not been flagged by any of the 95 vendors on VirusTotal as of the latest scan. The page title, 'Trezor Suite – Manage Your Crypto Securely,' directly mimics the official Trezor interface, increasing the likelihood of successful deception. The domain appears on three security blocklists, including PhishDestroy, MetaMask, and SEAL, and holds a Gridinsoft trust score of 0/100. The SSL certificate is issued by Google Trust Services, which, while not inherently malicious, is commonly exploited by threat actors to lend credibility to fraudulent sites. Current status confirms the domain remains active and accessible. Users are advised to exercise extreme caution and avoid interacting with this domain. Organizations should implement network-level blocking for 172.66.47.78 and the domain learn-tzrr-suite.pages.dev to prevent access. Cryptocurrency users should verify the authenticity of any Trezor-related domains by cross-referencing with the official Trezor website and using hardware wallet connections exclusively through verified channels. Security teams are encouraged to monitor for additional domains leveraging similar naming conventions or Cloudflare-hosted infrastructure to impersonate cryptocurrency services.
Data Coverage
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | learn-tzrr-suite.pages.dev |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
8 зовнішніх джерел під наглядом Збігів немає
Технології
Виявлено 3 технології з високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of learn-tzrr-suite.pages.dev · checked Jun 28, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога