suite--trezorr[.]pages[.]dev
“Trezor Suite Guide | Official Interface for Trezor® Hardware Wallets”
Збережене спостереження
Зафіксована відмінність заголовків
Зведення доказів
This domain, suite--trezorr.pages.dev, is identified as a high-risk brand impersonation threat targeting users of Trezor hardware wallets. Analysis indicates the site presents itself as an official interface, using the page title "Trezor Suite Guide | Official Interface for Trezor® Hardware Wallets" to deceive visitors into believing it is a legitimate portal. No specific drainer kit signatures were detected in initial scans, but the domain’s infrastructure and branding align with common tactics used in cryptocurrency phishing campaigns designed to harvest credentials or distribute malicious payloads. Infrastructure analysis reveals the following technical indicators: the domain resolves to the IP address 188.114.96.3 and was registered on June 15, 2026, through Cloudflare, Inc. Security vendors on VirusTotal flagged the domain, with 14 out of 95 detections indicating malicious activity. The domain appears on three security blocklists and is actively blocked by multiple threat intelligence platforms. The SSL certificate is issued by Google Trust Services, and the site employs HTTP/3 and HSTS protocols, which are often leveraged to lend an appearance of legitimacy. No Google Safe Browsing (GSB) hits were recorded at the time of assessment, though this does not preclude prior or future listings. The domain has been taken offline, likely in response to detection and reporting by security researchers and automated systems. While the immediate threat is mitigated, residual risk persists due to potential re-registration or migration to alternative infrastructure. Users who may have interacted with the domain are advised to revoke any active sessions, rotate credentials, and monitor for unauthorized transactions. Organizations should update blocklists to include this domain and its associated indicators, such as the IP address and SSL certificate details, to prevent future exposure. Continuous monitoring of similar domains, particularly those leveraging Cloudflare Pages or other content delivery networks, is recommended to detect emerging threats targeting cryptocurrency users.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
8 зовнішніх джерел під наглядом Збігів немає
Технології
Виявлено 3 технології з високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of suite--trezorr.pages.dev · checked Jun 25, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога