auth-start-trezo[.]pages[.]dev
“Suspected Phishing | Cloudflare”
The domain auth-start-trezo.pages.dev was registered on June 10, 2026 using the Cloudflare Pages service. Its creation date places the infrastructure within a narrow window of activity, and the use of a reputable hosting provider does not inherently mitigate the risk of abuse. The domain is currently listed on a single security blocklist and has been explicitly blocked by the PhishDestroy mitigation platform, indicating that at least one downstream security service has observed malicious usage. VirusTotal records show that the domain has been scanned by 91 antivirus and URL‑reputation vendors; as of the report date no vendor has raised a detection.
The absence of detections is explicitly noted as insufficient evidence of benign behavior, and the domain remains under investigation for generic phishing activity. Publicly available intelligence does not yet reveal details such as the resolved IP address, TLS certificate characteristics, HTTP response codes, or page title content. Consequently, the current evidence base is limited to registration metadata, blocklist presence, and the lack of detections in the VirusTotal feed.
Analysts should continue to monitor the domain for changes in reputation signals, observe any emergence of host‑level indicators, and consider adding the domain to proactive block policies across web gateways and endpoint protection solutions. Defensive actions may include DNS sink‑holing, URL filtering, and alerting on any traffic directed to the domain, especially in the context of credential‑harvesting attempts. Ongoing correlation with threat‑intel feeds such as OTX and additional sandbox analyses will be required to confirm the threat actor’s objectives and to refine mitigation strategies.
Pipeline ứng phó với các mối đe dọa
Phạm vi danh sách chặn
10 nguồn · đồng bộ 10/08/2026
Dòng thời gian phát hiện
Các quan sát đã lưu theo thứ tự thời gian.
-
Quan sát đã lưu
Quan sát đã lưu: lần đầu được quan sát là unknown
-
Quan sát đã lưu
Quan sát đã lưu: alive → dead
Báo cáo cộng đồng
Được 1 thành viên cộng đồng báo cáo; ghi nhận lần đầu 10/06/2026
- Báo cáo đã lưu
- 1
- URL được báo cáo duy nhất
- 1
Thông tin cộng đồng
1 báo cáo từ cộng đồng
Danh mụcIMPERSONATION
Brand abuse: phishing, impersonation, impersonating Trezor
Thông tin về tên miền
Chi tiết kỹ thuậtDNS, tên TLS và mốc thời gian
Công nghệ
Đã xác định 3 công nghệ có độ tin cậy cao
Phân tích của VirusTotal
Phân tích hiệu suất trang
Google PageSpeed Insights — mobile performance audit of auth-start-trezo.pages.dev · checked Jul 29, 2026
Bạn có bị ảnh hưởng bởi trang web này không?
Nếu bạn đã nhập thông tin xác thực tài khoản, thông tin cá nhân hoặc thông tin thanh toán hoặc đã tải xuống tệp từ miền này, hãy hành động ngay lập tức. Dưới đây là các nguồn lực giúp bạn báo cáo vụ việc và bảo vệ chính mình.
Hãy báo cáo với chính quyền địa phương
Chọn quốc gia của bạn để nhận liên hệ tội phạm mạng chính thức hoặc soạn thảo đơn khiếu nại →.
Kiểm tra bất kỳ tên miền nào
Phân tích mối đe dọa bằng cách sử dụng danh sách chặn được lưu trữ, WHOIS, DNS và bằng chứng quét công khai
Quét ngayBáo cáo lừa đảo qua email
Hãy gửi các tên miền đáng ngờ đến cơ sở dữ liệu mối đe dọa của chúng tôi — để bảo vệ cộng đồng
Báo cáoDòng tin tức về các mối đe dọa thời gian thực
Các báo cáo lừa đảo gần đây và những thay đổi về tính khả dụng được quan sát thấy
Theo dõiLuôn cập nhật thông tin, luôn an toàn
Theo dõi các mối đe dọa đang diễn ra hoặc phản đối danh sách này nếu bạn cho rằng đây là kết quả báo động sai