bridg-terezrr[.]pages[.]dev
“Trezor Bridge – The Secure Gateway to Your Hardware Wallet®”
证据摘要
PhishDestroy identifies bridg-terezrr.pages.dev as an active cryptocurrency drainer campaign distributing a fake login portal designed to harvest wallet credentials and seed phrases. This domain leverages Cloudflare Pages to host a convincing replica of a legitimate service, tricking users into entering sensitive information that is immediately transmitted to attacker-controlled wallets. The infrastructure is configured to proxy traffic through Cloudflare’s global network, adding layers of obfuscation to evade detection by traditional security tools. The domain was registered using Cloudflare, Inc. as the registrar and resolves to IP 172.66.46.247 with an SSL certificate issued by Google Trust Services, increasing its appearance of legitimacy. This domain exhibits high-risk characteristics with zero detections on VirusTotal as of the latest scan, indicating it has not yet been widely flagged by antivirus engines. The domain is newly registered and currently unlisted on most threat intelligence blocklists, allowing it to operate under the radar. Given its low detection profile and active hosting environment, it poses an immediate threat to users who may interact with it under the assumption of legitimacy. The absence of prior blocking and the use of reputable infrastructure providers like Cloudflare and Google Trust Services make this campaign particularly dangerous, as it bypasses common security heuristics that rely on domain reputation or certificate reputation. If you have visited bridg-terezrr.pages.dev and entered any cryptocurrency wallet credentials, seed phrases, or private keys, immediately revoke access to any connected wallets and transfer remaining assets to a newly generated wallet. Disconnect any active sessions associated with the entered credentials and enable multi-factor authentication where available. Report the incident to PhishDestroy for further investigation and consider revoking any API keys or permissions granted to the domain. Use a hardware wallet for future transactions and avoid entering sensitive information on any unverified web portal. Stay vigilant and continue monitoring your wallet activity for any unauthorized transactions.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月13日
社区报告
由 1 名社区成员报告;首次发现于 2026年4月12日
- 已存储报告
- 1
- 已报告的唯一 URL
- 1
社区情报
1 条社区报告
类别PHISHING
The PhishFort Detection System has flagged this as a domain threat, classified as phishing. Associated tags: subdomain, typosquat. Threat detected at 2026-05-01T07:24:45.998Z.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of bridg-terezrr.pages.dev · checked Apr 12, 2026
仿冒域名
已存储 74 个仿冒域名
显示全部(62)
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控