content-staking-cdnn[.]webflow[.]io
“Trezor staking® | Staking Ethereum (ETH) on TreZor”
已存储的观测记录
观测到的标题差异
证据摘要
This domain, content-staking-cdnn.webflow.io, is identified as an active high-risk phishing resource specializing in brand impersonation targeting Trezor, a cryptocurrency hardware wallet provider. The site presents itself as a legitimate staking platform for Ethereum (ETH) under the false pretense of official Trezor services, using the page title 'Trezor staking® | Staking Ethereum (ETH) on TreZor.' Analysis indicates the presence of a cryptocurrency drainer mechanism, designed to siphon digital assets from unsuspecting users by mimicking trusted interfaces and transaction prompts.
Infrastructure analysis reveals the following technical indicators: the domain resolves to the IP address 104.18.36.248 and is hosted on a platform utilizing SSL certificates issued by Google Trust Services. It was initially registered through MarkMonitor, Inc. on May 8, 2013, though the specific phishing subdomain appears to be a more recent creation. Detection metrics show a VirusTotal score of 3/95, with three security vendors flagging the domain as malicious. Additionally, the domain appears on three distinct security blocklists and is actively blocked by multiple threat intelligence feeds, including PhishDestroy, MetaMask, and SEAL. Gridinsoft assigns a trust score of 0/100, further corroborating its malicious classification.
As of the latest assessment, content-staking-cdnn.webflow.io remains operational, indicating an ongoing threat. Response actions by security entities have included widespread blocking and blacklisting; however, the domain continues to resolve and may still pose a risk to users unaware of its fraudulent nature. Organizations and individuals are advised to implement network-level blocking for the domain and IP address, deploy endpoint protection measures, and conduct user awareness training to mitigate the risk of asset compromise. Continuous monitoring of related subdomains and infrastructure reuse patterns is recommended to preempt further abuse.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
检测时间线
-
VirusTotal
0 → 3
技术
识别出 3 项高置信度技术
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of content-staking-cdnn.webflow.io · checked Jun 26, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控