sso-trezr-faq[.]square[.]site
“404 - Page Not Found”
sso-trezr-faq.square.site — 内容不可用. 证据摘要: VirusTotal 1/95 (Kaspersky); PhishDestroy score 55/100. 注册商: MarkMonitor.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain sso-trezr-faq.square.site has been confirmed as a generic phishing threat, specifically designed to impersonate Trezor, a popular cryptocurrency hardware wallet provider. As of the latest analysis, this site has been taken offline, mitigating immediate risk to users. However, its previous operation posed a significant danger to individuals seeking official Trezor support or account access.
PhishDestroy's investigation reveals that sso-trezr-faq.square.site was flagged by 1 out of 95 security vendors on VirusTotal, indicating limited but notable detection. The domain was registered on February 5, 2019, through MarkMonitor, Inc., and resolves to the IP address 74.115.51.5. It uses an SSL certificate issued by Let's Encrypt (E7), which is common among legitimate sites but also frequently abused by phishers. The domain appeared on one security blocklist, and its page title returned a 404 error, suggesting the phishing content was removed or never fully deployed.
Given the domain's elevated risk level and its association with a known brand (Trezr, a likely misspelling of Trezor), users who may have interacted with this site before its takedown should immediately change their Trezor-related passwords and enable two-factor authentication where available. While the site is now offline, similar phishing attempts may emerge under different subdomains or variations. PhishDestroy recommends always verifying URLs directly through official Trezor channels and avoiding links in unsolicited messages. For any suspected compromise, contact Trezor support and monitor accounts for unauthorized activity.
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
Registration: square.site
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For the registrable domain square.site behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
所用技术 · 2 identified
Cloud computing platform offering compute, storage, and networking services.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comVirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。