radiant-daffodil-c06d27[.]netlify[.]app
“Trezor Suite”
radiant-daffodil-c06d27.netlify.app — Контент недоступний. Уособлення бренду: Trezor; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 19/95 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CRDF); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. Реєстратор: Netlify.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain "radiant-daffodil-c06d27.netlify.app" presents a significant threat by impersonating a well-known cryptocurrency hardware wallet brand. This site mimics official branding to deceive users into believing they are accessing a legitimate service. The threat primarily involves capturing sensitive user credentials and potentially draining cryptocurrency accounts by tricking users into entering sensitive information on a fake interface titled "Trezor Suite."
Several technical indicators have been used to identify and confirm the malicious nature of this domain. The domain resolves to the IP address 63.176.8.218, which is associated with infrastructure located in Germany, specifically under the AS16509 Amazon.com, Inc. network. The domain is registered through Netlify, and it uses an SSL certificate issued by DigiCert Inc. Importantly, the domain has been flagged by 19 out of 95 security vendors on VirusTotal as malicious, indicating a high level of concern from the cybersecurity community about its legitimacy. Furthermore, it has been added to a security blocklist by PhishDestroy, reinforcing the assessment of its threat potential.
If a user has visited this site, it is crucial to take immediate actions to mitigate potential damage. Users should first ensure that any credentials entered on the site are considered compromised and take steps to secure their accounts, such as changing passwords and enabling two-factor authentication where possible. It is also advisable to check for unauthorized transactions and report any suspicious activity to your financial institution. Lastly, keeping personal security software updated and running a full system scan can help detect any malware that may have been inadvertently downloaded as a result of interacting with the site.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 2 identified
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіАналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога