intro-bridgess[.]pages[.]dev
“Trezor Bridge — Secure Connection for Your Trezor | Official Site”
证据摘要
This domain, intro-bridgess.pages.dev, poses a significant risk to users by impersonating Trezor, a well-known cryptocurrency hardware wallet provider. The site is designed to deceive visitors into believing they are interacting with the official Trezor Bridge software, which facilitates secure connections between Trezor devices and web browsers. Instead, the domain likely operates as a crypto drainer, a type of attack that tricks users into authorizing malicious transactions, resulting in the theft of digital assets from their wallets. The elevated risk level is due to the domain's convincing mimicry of legitimate Trezor branding, including the use of official logos, color schemes, and page titles such as 'Trezor Bridge — Secure Connection for Your Trezor | Official Site.' Such tactics are commonly employed to exploit trust and urgency, particularly among users seeking to manage or secure their cryptocurrency holdings. Analysis indicates that intro-bridgess.pages.dev was registered on April 27, 2026, through Cloudflare, Inc., a registrar frequently utilized for both legitimate and malicious purposes due to its privacy and security features. The domain resolves to the IP address 188.114.97.3, which is part of Cloudflare's infrastructure, further complicating attribution and takedown efforts. At the time of assessment, the domain appeared on one security blocklist, and 11 out of 95 security vendors on VirusTotal flagged it as malicious, with detections specifically identifying it as a brand impersonation or crypto-related threat. The SSL certificate, issued by Google Trust Services (WE1), adds a layer of apparent legitimacy, as encrypted connections are often mistakenly associated with trustworthiness. However, the creation date, registrar, and detection counts collectively highlight the domain's suspicious nature and alignment with known phishing campaigns targeting cryptocurrency users. Users who visited intro-bridgess.pages.dev or interacted with its content should take immediate action to mitigate potential risks. First, disconnect any cryptocurrency wallets or devices that may have been connected to the site, as these could have been compromised. Monitor wallet transactions closely for unauthorized activity, and consider transferring assets to a new wallet if suspicious transactions are detected. Additionally, revoke any permissions granted to unknown or suspicious applications via wallet management interfaces, such as those provided by MetaMask or other browser-based wallets. It is also advisable to scan the device used to access the domain for malware, as crypto drainers may deploy additional payloads to maintain persistence or exfiltrate sensitive data. Finally, report the domain to relevant security organizations and cryptocurrency platforms to aid in broader threat mitigation efforts. Given the domain's current offline status, users should remain vigilant for similar threats, particularly those leveraging brand impersonation and urgency-driven tactics to exploit cryptocurrency holders.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月13日
技术
识别出 3 项高置信度技术
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of intro-bridgess.pages.dev · checked Apr 27, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控