trzor-suiters[.]framer[.]ai
“Trezor Suite | Official App to Manage and Secure Your Crypto”
trzor-suiters.framer.ai — Контент недоступний. Уособлення бренду: Trezor; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 6/95 (alphaMountain.ai, CyRadar, Gridinsoft, Kaspersky, Lionic); URLScan malicious verdict; PhishDestroy score 68/100. Реєстратор: CSC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis of the domain trzor-suiters.framer.ai indicates a crypto scam impersonating Trezor, a hardware wallet provider. The domain was registered on April 4, 2023, through CSC Corporate Domains, Inc., and resolves to IP 52.223.52.2, hosted on Amazon.com, Inc. infrastructure (AS16509) in the United States. The page title, 'Trezor Suite | Official App to Manage and Secure Your Crypto,' directly mimics Trezor's legitimate branding, aligning with the reported scam type targeting cryptocurrency users. The domain is currently offline, returning an HTTP 404 status, and appears on one security blocklist.
Six of 95 security vendors on VirusTotal flagged the domain as malicious, though the specific detection criteria remain unverified. SSL certification is provided by Let's Encrypt (E8), a common but not inherently suspicious issuer. Technologies detected include Framer Sites, React, HSTS, and HTTP/3, suggesting a modern web framework was used to construct the phishing page. Nameservers are hosted under AWS (ns-114.awsdns-14.com, ns-1198.awsdns-21.org, ns-1902.awsdns-45.co.uk, ns-635.awsdns), consistent with cloud-based hosting.
Defenders should treat this domain as a confirmed brand impersonation threat, particularly for users of Trezor products. While the domain is offline, monitoring for reactivation or related infrastructure (e.g., IP, nameservers) is recommended. No evidence of widespread distribution or additional attack vectors (e.g., malware, credential harvesting) is present in the available data.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com 100% впевненостіReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога