crypto-trezr-suites[.]wasmer[.]app
“Download Trezor Suite | Official App for Trezor Wallets”
crypto-trezr-suites.wasmer.app — 内容不可用. 品牌冒充:Trezor; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 1/91 (Kaspersky); URLScan malicious verdict; Spamhaus DBL_ABUSED_PHISH; PhishDestroy score 55/100. 注册商: Squarespace Domains II.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, crypto-trezr-suites.wasmer.app, poses a high-risk brand impersonation threat specifically targeting users of Trezor, a widely recognized cryptocurrency hardware wallet provider. The site presents itself as the official download portal for Trezor Suite, a legitimate software application used to manage Trezor devices. Analysis indicates the domain is designed to deceive users into downloading malicious software, likely a crypto drainer or credential harvester, by mimicking the look, feel, and naming conventions of the authentic Trezor platform. The use of official branding elements, including logos, color schemes, and terminology, increases the likelihood of successful social engineering, particularly among users seeking to update or install wallet management tools. Infrastructure analysis reveals concrete indicators of malicious intent. The domain resolves to the IP address 62.210.172.147 and is currently active, serving content under an SSL certificate issued by Let’s Encrypt. Only 1 out of 95 security vendors on VirusTotal have flagged this domain as malicious, suggesting either a newly deployed threat or one that has evaded broader detection thus far. The domain is registered through Wasmer, a platform known for enabling rapid deployment of web applications, which is frequently exploited by threat actors to host impersonation sites with minimal oversight. No historical blocklist data or creation date was provided, but the low detection rate and active status underscore the urgency of addressing this threat. Users who have visited crypto-trezr-suites.wasmer.app or downloaded any files from the site should take immediate action to mitigate potential compromise. Disconnect the device from the internet and avoid entering any credentials or seed phrases. Scan the system using updated security tools to detect and remove any malicious payloads. If cryptocurrency transactions were initiated or wallet credentials were entered, assume the wallet is compromised and transfer remaining assets to a new, secure wallet using a trusted device. Monitor all linked accounts for unauthorized activity and report the incident to relevant security teams or platforms. Trezor users should only download software from the official domain, trezor.io, and verify the authenticity of any communications or download links through official support channels.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
Registration: wasmer.app
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For the registrable domain wasmer.app behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of crypto-trezr-suites.wasmer.app · checked Jul 2, 2026
证据与外部报告
PD-20260702-AD9F1A Recipient: abuse@wasmer.io 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。