trezeroistatr[.]gitbook[.]io
“Trezor.io/Start® | A new desktop and web | [en - US]”
trezeroistatr.gitbook.io — Nội dung không có sẵn. Mạo danh thương hiệu: Trezor; Loại lừa đảo: Brand Impersonation. Tóm tắt bằng chứng: VirusTotal 4/91 (ChainPatrol, alphaMountain.ai, Kaspersky, Netcraft); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 83/100. Nhà đăng ký: Cloudflare.
Phân tích chi tiết của PhishDestroy AI bên dưới được giữ bằng tiếng Anh để bảo toàn hồ sơ pháp chứng gốc.
This domain operates as a credential harvesting platform specifically targeting users of Trezor hardware wallets. The site presents itself as the official Trezor.io/Start page, complete with identical branding, layout, and language localization indicators. Analysis indicates the page is designed to capture recovery seed phrases, private keys, and wallet credentials during what users believe to be legitimate device initialization procedures. The fraudulent nature is further evidenced by the inclusion of copyright symbols and version indicators that closely mirror Trezor's official documentation patterns. Infrastructure analysis reveals multiple technical indicators of malicious activity. The domain resolves to IP address 104.18.40.47 and is flagged by 3 of 95 security vendors on VirusTotal, including cryptocurrency-specific detection engines. Registered through Cloudflare, Inc. on March 30, 2014, the domain appears to leverage legitimate hosting infrastructure to evade detection. The site is currently present on three security blocklists and is actively blocked by multiple wallet protection systems. The SSL certificate issued by Google Trust Services provides an additional layer of apparent legitimacy while masking the credential harvesting functionality. Users who have visited this domain should immediately consider their wallet credentials compromised. All recovery seed phrases entered on this site must be treated as exposed, requiring immediate migration of funds to new wallets with fresh seed phrases. The original Trezor device should be reset to factory settings using official firmware, and all connected computers should undergo malware scanning to detect potential secondary infections. Due to the high-risk nature of credential harvesting in cryptocurrency contexts, affected users should monitor all associated wallet addresses for unauthorized transactions and consider implementing additional security measures such as hardware wallet passphrase protection and multi-signature requirements for future transactions.
Pipeline ứng phó với các mối đe dọa
Trạng thái trong danh sách chặn công khai
Công nghệ · 7 identified
GitBook is a command-line tool for creating documentation using Git and Markdown.
www.gitbook.com Độ tin cậy 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Độ tin cậy 100%Google Cloud Trace is a distributed tracing system that collects latency data from applications and displays it in the Google Cloud Console.
cloud.google.com Độ tin cậy 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Độ tin cậy 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Độ tin cậy 100%Google Cloud Storage allows world-wide storage and retrieval of any amount of data at any time.
cloud.google.com Độ tin cậy 100%Phân tích của VirusTotal
Bằng chứng lưu trữ
Phân tích hiệu suất trang
Google PageSpeed Insights — mobile performance audit of trezeroistatr.gitbook.io · checked Jun 29, 2026
Bằng chứng và các báo cáo bên ngoài
Bạn có bị ảnh hưởng bởi trang web này không?
Nếu bạn đã nhập thông tin xác thực tài khoản, thông tin cá nhân hoặc thông tin thanh toán hoặc đã tải xuống tệp từ miền này, hãy hành động ngay lập tức. Dưới đây là các nguồn lực giúp bạn báo cáo vụ việc và bảo vệ chính mình.
Hãy báo cáo với chính quyền địa phương
Chọn quốc gia của bạn để nhận liên hệ tội phạm mạng chính thức hoặc soạn thảo đơn khiếu nại →.
Kiểm tra bất kỳ tên miền nào
Phân tích mối đe dọa bằng cách sử dụng danh sách chặn được lưu trữ, WHOIS, DNS và bằng chứng quét công khai
Quét ngayBáo cáo lừa đảo qua email
Hãy gửi các tên miền đáng ngờ đến cơ sở dữ liệu mối đe dọa của chúng tôi — để bảo vệ cộng đồng
Báo cáoDòng tin tức về các mối đe dọa thời gian thực
Các báo cáo lừa đảo gần đây và những thay đổi về tính khả dụng được quan sát thấy
Theo dõiLuôn cập nhật thông tin, luôn an toàn
Theo dõi các mối đe dọa đang diễn ra hoặc phản đối danh sách này nếu bạn cho rằng đây là kết quả báo động sai