bredges--trwzer-web[.]pages[.]dev
“Trezor Bridge: Secure Connection for Your Hardware Wallet”
Quan sát đã lưu
Độ tương phản tiêu đề quan sát được
Tóm tắt bằng chứng
This domain, bredges--trwzer-web.pages.dev, is flagged for brand impersonation targeting Trezor, a hardware wallet provider. Analysis indicates the site mimics Trezor Bridge, a legitimate software component used to establish secure connections between Trezor devices and web browsers. The page title, 'Trezor Bridge: Secure Connection for Your Hardware Wallet,' directly replicates official branding, suggesting an intent to deceive users into interacting with malicious infrastructure under the guise of trusted software. No crypto drainer kit signatures were identified in initial scans, but the domain's structure and content align with tactics used in credential harvesting or malware distribution campaigns. Technical indicators reveal the following: the domain exhibits 0/95 detections on VirusTotal, indicating no prior flagging by security vendors at the time of analysis. It was registered on May 01, 2026, through Cloudflare, Inc., and resolves to the IP address 172.66.44.174. The SSL certificate is issued by Google Trust Services, a common feature in both legitimate and malicious domains leveraging Cloudflare's infrastructure. The domain appears on one security blocklist, as reported by PhishDestroy, and employs technologies such as HSTS, Cloudflare, and HTTP/3. Gridinsoft assigns a trust score of 0/100, further corroborating its suspicious nature. No detections were recorded in Google Safe Browsing databases at the time of this report. The domain is currently offline, having been taken down following initial detection. Response actions included reporting the domain to relevant blocklists and notifying the hosting provider to prevent further access. Despite its offline status, residual risk remains due to the potential for re-registration or migration to alternative infrastructure. Users who may have interacted with the domain are advised to revoke any active sessions, rotate credentials, and verify the integrity of their systems for unauthorized modifications. Organizations should monitor for similar impersonation attempts, particularly those leveraging subdomain services (e.g., *.pages.dev) to evade detection. Continuous scrutiny of domains mimicking hardware wallet software is recommended, given the high-value targets associated with cryptocurrency assets.
Data Coverage
Tình báo an ninh mạng
Pipeline ứng phó với các mối đe dọa
Phạm vi danh sách chặn
10 nguồn ngoài được giám sát · ảnh chụp lưu ngày 10/08/2026
10 nguồn ngoài được giám sát Không trùng khớp
Dòng thời gian phát hiện
-
VirusTotal
4 → 0
Thông tin về tên miền
Chi tiết kỹ thuậtDNS, tên TLS và mốc thời gian
Công nghệ
Đã xác định 3 công nghệ có độ tin cậy cao
Phân tích của VirusTotal
Phân tích hiệu suất trang
Google PageSpeed Insights — mobile performance audit of bredges--trwzer-web.pages.dev · checked Jun 26, 2026
Bạn có bị ảnh hưởng bởi trang web này không?
Nếu bạn đã nhập thông tin xác thực tài khoản, thông tin cá nhân hoặc thông tin thanh toán hoặc đã tải xuống tệp từ miền này, hãy hành động ngay lập tức. Dưới đây là các nguồn lực giúp bạn báo cáo vụ việc và bảo vệ chính mình.
Hãy báo cáo với chính quyền địa phương
Chọn quốc gia của bạn để nhận liên hệ tội phạm mạng chính thức hoặc soạn thảo đơn khiếu nại →.
Kiểm tra bất kỳ tên miền nào
Phân tích mối đe dọa bằng cách sử dụng danh sách chặn được lưu trữ, WHOIS, DNS và bằng chứng quét công khai
Quét ngayBáo cáo lừa đảo qua email
Hãy gửi các tên miền đáng ngờ đến cơ sở dữ liệu mối đe dọa của chúng tôi — để bảo vệ cộng đồng
Báo cáoDòng tin tức về các mối đe dọa thời gian thực
Các báo cáo lừa đảo gần đây và những thay đổi về tính khả dụng được quan sát thấy
Theo dõiLuôn cập nhật thông tin, luôn an toàn
Theo dõi các mối đe dọa đang diễn ra hoặc phản đối danh sách này nếu bạn cho rằng đây là kết quả báo động sai