officialstart-trezr-io[.]framer[.]ai
“Trézor.io/Start â Starting Up⢠Your Device | Trezor®®”
officialstart-trezr-io.framer.ai — Контент недоступний. Уособлення бренду: Trezor; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 8/91; URLQuery 3 alerts; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 78/100. Реєстратор: CSC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain officialstart-trezr-io.framer.ai, which impersonates Trezor, has been taken down, but not before it was flagged as malicious by 8 out of 91 vendors on VirusTotal. This domain was also included in the blocklists of PhishDestroy, MetaMask, and SEAL, indicating significant recognition of its threat potential. Registered through CSC Corporate Domains, Inc., and hosted on IP 31.43.161.6, the site used Let's Encrypt for SSL certification.
The fraudulent page bore the title 'Trézor.io/Start â Starting Up⢠Your Device | Trezor®®', suggesting a deceptive intent to mimic Trezor's legitimate onboarding process. Such impersonation schemes aim to harvest sensitive user information by misleading users into believing they are interacting with a trusted brand. The domain's creation and detection date both fall on June 15, 2026, highlighting the swift action taken to identify and address this threat.
Despite the site now being offline, the incident underscores the importance of rapid detection and response in the cybersecurity landscape. The platform risk score of 85/100 further emphasizes the potential impact this domain could have had if not swiftly neutralized. Phishing domains like this one exploit the narrow window between registration and detection, often bypassing traditional security measures. PhishDestroy's proactive approach enables early identification, mitigating risks before they escalate.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
PD-20260617-A0CD33 Recipient: abuse@framer.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога