trizorwallet[.]webflow[.]io
“Trezor $ Wallet - (Official* % Website)”
Збережене спостереження
Зафіксована відмінність заголовків
Зведення доказів
This domain, trizorwallet.webflow.io, poses a high-risk brand impersonation threat targeting users of the Trezor cryptocurrency wallet. The site mimics the official Trezor interface, presenting itself as the "Trezor $ Wallet - (Official* % Website)" to deceive visitors into entering sensitive credentials or downloading malicious software. Such impersonation typically aims to facilitate cryptocurrency theft by tricking users into revealing recovery phrases, private keys, or installing compromised wallet applications. The threat is particularly dangerous due to the irreversible nature of cryptocurrency transactions, which can result in immediate and permanent financial loss for victims. Analysis indicates this domain is actively malicious, with multiple technical indicators supporting this assessment. The domain was created on May 8, 2013, though it is likely repurposed for malicious activity, as evidenced by its current use. It resolves to the IP address 172.64.151.8 and is registered through MarkMonitor, Inc., a registrar commonly used for both legitimate and malicious domains. Detection data from VirusTotal shows that 7 out of 95 security vendors flag this domain as malicious, while it appears on three security blocklists and is blocked by multiple threat intelligence platforms. The SSL certificate is issued by Google Trust Services, which, while legitimate, does not mitigate the domain's malicious intent. Users who have visited trizorwallet.webflow.io should take immediate action to mitigate potential risks. First, disconnect any devices that interacted with the site from the internet to prevent further data exfiltration. If any credentials, recovery phrases, or private keys were entered, assume they are compromised and transfer all cryptocurrency holdings to a new, secure wallet immediately. Monitor all linked accounts for unauthorized transactions and enable multi-factor authentication where possible. Additionally, scan the device used to access the site with updated security software to detect and remove any malware. Report the incident to relevant financial or cryptocurrency platforms to assist in tracking and mitigating the threat. Users should also consider notifying local cybersecurity authorities to contribute to broader threat intelligence efforts.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 12.08.2026
8 зовнішніх джерел під наглядом Збігів немає
Хронологія виявлення
-
VirusTotal
0 → 7
Технології
Виявлено 3 технології з високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of trizorwallet.webflow.io · checked Jun 26, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога