hub-logen-treezio[.]pages[.]dev
“Secure Crypto Access | Trezor Login”
hub-logen-treezio.pages.dev — 内容不可用. 品牌冒充:Trezor; 诈骗类型:Credential Phishing. 证据摘要: VirusTotal 3/94 (ADMINUSLabs, Kaspersky, LevelBlue); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 71/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies hub-logen-treezio.pages.dev as an active credential harvesting phishing site hosted on Cloudflare Workers. This domain resolves to IP 172.66.47.164 and operates behind Google Trust Services SSL, increasing its credibility. The page was flagged under seed 115fa5 and is currently under investigation by security teams. No detections on VirusTotal as of the latest scan suggests this phishing campaign is either newly deployed or employs highly evasive techniques to evade automated detection engines.
This domain was flagged as a credential harvesting phishing site due to its likely role in mimicking legitimate login portals to trick users into submitting sensitive information. The site’s infrastructure (Cloudflare Workers, Google SSL) allows rapid deployment and rotation, making traditional blocklists ineffective. VirusTotal’s 3/95 detection ratio at the time of evaluation indicates the absence of signatures in leading security engines, highlighting the need for behavioral and heuristic analysis rather than relying on file-based detection alone. Threat actors often use Cloudflare Pages or Workers to host phishing pages because of the service’s legitimate appearance and speed, making it harder for users to distinguish between real and fake pages.
Users who visited hub-logen-treezio.pages.dev should immediately check their accounts for unauthorized access. If any login credentials were entered on this site, change passwords immediately and enable multi-factor authentication on all related accounts. Clear browser cache and cookies for this domain and monitor accounts for suspicious activity such as unexpected transactions or data exfiltration. Report the domain to your security provider or browser vendor to aid in blocking efforts. Avoid reusing passwords across sites, as compromised credentials may be used in broader account takeovers.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of hub-logen-treezio.pages.dev · checked Apr 2, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。