log-tzer-bridg-run[.]pages[.]dev
“NOTICE — Unofficial Guide: Trezor Bridge (Educational)”
log-tzer-bridg-run.pages.dev — 未验证. 品牌冒充:Trezor; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 11/91 (alphaMountain.ai, BitDefender, CyRadar, ESET, Fortinet); PhishDestroy score 83/100. 注册商: Cloudflare Pages.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, log-tzer-bridg-run.pages.dev, presents a high-risk brand impersonation threat targeting users of Trezor cryptocurrency hardware wallets. The page mimics the official Trezor Bridge software under the title 'NOTICE — Unofficial Guide: Trezor Bridge (Educational)', likely designed to deceive users into downloading malicious software or disclosing sensitive credentials. The educational framing serves as a social engineering tactic to lower user vigilance, increasing the likelihood of successful compromise of wallet access or installation of unauthorized firmware. Analysis indicates the domain was registered on March 25, 2026, through Cloudflare Pages infrastructure, resolving to IP address 188.114.97.3. It appears on one security blocklist and is flagged by 5 out of 95 security vendors on VirusTotal, including detection for phishing or malicious content. The SSL certificate is issued by Google Trust Services (WE1), a common feature in both legitimate and malicious Cloudflare-hosted sites. Infrastructure analysis reveals the IP is geolocated in Canada and associated with Cloudflare, Inc., a provider frequently leveraged by threat actors to obscure origin servers and evade takedown efforts. Users who have visited log-tzer-bridg-run.pages.dev or interacted with its content should immediately cease all activity on the site. If credentials were entered or software downloaded, affected devices should be isolated and scanned for malware using updated security tools. Cryptocurrency wallet users are advised to verify all transactions and consider migrating funds to a new wallet if compromise is suspected. Trezor users should only download software from the official trezor.io domain and verify digital signatures before installation. Ongoing monitoring for unauthorized access attempts or unusual network activity is recommended.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of log-tzer-bridg-run.pages.dev · checked Mar 26, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。