helps-suite-web[.]framer[.]ai
“Trezor Suite - Secure Hardware Wallet”
helps-suite-web.framer.ai — 内容不可用. 品牌冒充:Trezor; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 11/91 (ChainPatrol, alphaMountain.ai, CyRadar, Emsisoft, Fortinet); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 83/100. 注册商: CSC.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, helps-suite-web.framer.ai, is under investigation for brand_impersonation targeting users of a well-known hardware wallet provider. The site presents itself as an official platform, using the page title 'Trezor Suite - Secure Hardware Wallet,' which closely mimics legitimate service branding. Such impersonation tactics are commonly employed to deceive users into disclosing sensitive credentials, installing malicious software, or transferring assets under false pretenses. The domain’s infrastructure and content are designed to exploit trust in the targeted brand, increasing the likelihood of successful social engineering attacks. Infrastructure analysis reveals several technical indicators that warrant scrutiny. The domain was registered on January 06, 2018, through CSC Corporate Domains, Inc., a registrar frequently associated with both legitimate and malicious registrations. It currently resolves to the IP address 31.43.160.6, which has not been flagged in public blocklists at the time of assessment. VirusTotal reports 0 detections out of 95 security engines, indicating no prior malicious classification, though this does not preclude the possibility of undetected threats. The SSL certificate is issued by Let’s Encrypt, a common provider for both benign and malicious sites, which does not inherently validate the domain’s legitimacy. The absence of prior detections or blocklist entries suggests the domain may be newly weaponized or operating below detection thresholds. Users who have visited helps-suite-web.framer.ai should take immediate corrective actions to mitigate potential risks. Any credentials, recovery phrases, or private keys entered on the site should be considered compromised and revoked or regenerated through official channels. Devices used to access the domain should undergo a full security scan to detect potential malware or unauthorized modifications. If financial transactions were initiated, affected parties should contact their financial institutions to report potential fraud and monitor accounts for suspicious activity. To verify authenticity, users should only interact with domains confirmed through official documentation or direct communication from the legitimate service provider. Continuous monitoring of infrastructure changes, such as IP shifts or certificate updates, is recommended to assess evolving threats associated with this domain.
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com 置信度 100%React is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 置信度 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of helps-suite-web.framer.ai · checked Jun 26, 2026
证据与外部报告
PD-20260626-D0DAB8 Recipient: abuse@framer.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。