auth-start-trezo[.]pages[.]dev
“Suspected Phishing | Cloudflare”
证据摘要
The domain auth-start-trezo.pages.dev was registered on June 10, 2026 using the Cloudflare Pages service. Its creation date places the infrastructure within a narrow window of activity, and the use of a reputable hosting provider does not inherently mitigate the risk of abuse. The domain is currently listed on a single security blocklist and has been explicitly blocked by the PhishDestroy mitigation platform, indicating that at least one downstream security service has observed malicious usage. VirusTotal records show that the domain has been scanned by 91 antivirus and URL‑reputation vendors; as of the report date no vendor has raised a detection.
The absence of detections is explicitly noted as insufficient evidence of benign behavior, and the domain remains under investigation for generic phishing activity. Publicly available intelligence does not yet reveal details such as the resolved IP address, TLS certificate characteristics, HTTP response codes, or page title content. Consequently, the current evidence base is limited to registration metadata, blocklist presence, and the lack of detections in the VirusTotal feed.
Analysts should continue to monitor the domain for changes in reputation signals, observe any emergence of host‑level indicators, and consider adding the domain to proactive block policies across web gateways and endpoint protection solutions. Defensive actions may include DNS sink‑holing, URL filtering, and alerting on any traffic directed to the domain, especially in the context of credential‑harvesting attempts. Ongoing correlation with threat‑intel feeds such as OTX and additional sandbox analyses will be required to confirm the threat actor’s objectives and to refine mitigation strategies.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
检测时间线
-
域名状态
可访问 → 无法访问
域名情报
技术详情DNS、TLS 名称和时间戳
技术
识别出 3 项高置信度技术
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of auth-start-trezo.pages.dev · checked Jul 29, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控