bcg-tresor-bridge[.]pages[.]dev
“Trezor Bridge — New Different Logo Styles”
bcg-tresor-bridge.pages.dev — 内容不可用. 品牌冒充:Trezor; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 12/94 (ADMINUSLabs, BitDefender, Chong Lua Dao, CyRadar, ESET); URLScan malicious verdict; PhishDestroy score 91/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies bcg-tresor-bridge.pages.dev as a high-risk domain engaged in active brand impersonation targeting the Trezor cryptocurrency wallet ecosystem. This fraudulent page leverages a spoofed Trezor Bridge interface to deceive users into downloading counterfeit software or divulging sensitive credentials. The attack employs a convincing Trezor-themed visual design, including a fabricated page title—'Trezor Bridge — New Different Logo Styles'—to lend false legitimacy to the phishing lure. While no custom drainer kit has been confirmed in this instance, the page’s structure suggests it may redirect victims to a secondary payload designed for credential theft or cryptocurrency fund siphoning. This domain resolves to IP address 172.66.46.236 and operates under a Google Trust Services SSL certificate, likely to evade browser-based warnings. Registered via Cloudflare, Inc., it currently remains active despite minimal detection coverage, with only 1 out of 95 VirusTotal security vendors flagging the URL as malicious. The domain’s recent creation date and use of a trusted certificate authority underscore the sophistication of this impersonation campaign. Notably, it has not yet been flagged by Google Safe Browsing (GSB), and its presence on public blocklists remains limited, increasing its potential reach among unsuspecting users. At present, bcg-tresor-bridge.pages.dev continues to operate undetected, posing an ongoing risk to Trezor users and cryptocurrency holders. Immediate response actions include updating network blocklists, flagging the domain in DNS filtering systems, and issuing user advisories to avoid interacting with the page. Remaining risk factors include the domain’s active status, lack of widespread detection, and the likelihood of further refinement to evade security measures. Organizations are advised to monitor for related infrastructure, block the IP and domain at the perimeter, and educate users on verifying official Trezor channels before downloading software or entering credentials.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of bcg-tresor-bridge.pages.dev · checked Apr 13, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。