public-help-terezor[.]framer[.]ai
“Trezor.io/Start® â Starting Up Your Device | Trezor®”
public-help-terezor.framer.ai — Контент недоступний. Уособлення бренду: Trezor; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 11/91 (ChainPatrol, alphaMountain.ai, CyRadar, Emsisoft, Forcepoint ThreatSeeker); URLQuery 3 alerts; URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 87/100. Реєстратор: CSC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, public-help-terezor.framer.ai, poses a high-risk threat by impersonating the official Trezor hardware wallet setup process. Visitors are presented with a fraudulent page titled 'Trezor.io/Start — Starting Up Your Device | Trezor,' designed to mimic the legitimate device initialization procedure. The objective is to deceive users into entering sensitive recovery phrases or private keys, enabling attackers to compromise cryptocurrency wallets and steal funds without authorization. The site employs visual and textual elements identical to the authentic Trezor interface, increasing the likelihood of successful deception among less cautious users. Analysis indicates the domain was registered on January 6, 2018, through CSC Corporate Domains, Inc., a registrar frequently associated with both legitimate and malicious registrations. The domain resolves to the IP address 31.43.160.6 and is secured with a Let's Encrypt SSL certificate, which provides an illusion of legitimacy. Security vendor detections on VirusTotal report 11 out of 95 engines flagging the domain as malicious, while it appears on three distinct security blocklists. Additional infrastructure scrutiny reveals the domain has been blocked by multiple security mechanisms, further confirming its malicious intent. Users who accessed this domain should immediately cease all interaction and assume any entered credentials or recovery phrases have been compromised. It is critical to revoke access to any connected wallets and transfer remaining assets to a new, secure wallet using a verified device. Monitor all linked accounts for unauthorized transactions and enable multi-factor authentication where available. If the fraudulent site was accessed via a link in an email or message, report the sender to the respective platform and avoid engaging with similar unsolicited communications in the future. Regularly update security software to detect and block emerging threats of this nature.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com 100% впевненостіReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of public-help-terezor.framer.ai · checked Jun 25, 2026
Докази та зовнішні звіти
PD-20260617-939150 Recipient: abuse@framer.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога