trazorbridge[.]pages[.]dev
“Trezor Bridge - Secure Connection for Trezor Devices”
已存储的观测记录
观测到的标题差异
证据摘要
This domain presents a direct brand impersonation threat targeting users of Trezor hardware wallets by mimicking the official Trezor Bridge software. The site, trazorbridge.pages.dev, displays the page title 'Trezor Bridge - Secure Connection for Trezor Devices,' a deliberate attempt to deceive users into believing they are interacting with legitimate Trezor infrastructure. Such impersonation is commonly used to distribute malicious software, harvest credentials, or intercept sensitive data during device connection processes. Given the critical role of bridge software in hardware wallet security, this domain poses a high-risk vector for financial theft or device compromise. Analysis of the domain reveals several technical indicators supporting its fraudulent nature. The domain was registered on March 31, 2026, through Cloudflare, Inc., an unusually future creation date that suggests potential domain spoofing or registry manipulation. It resolves to the IP address 172.66.47.129 and is currently offline, though it previously appeared on one security blocklist. VirusTotal reports 0 out of 95 security vendors flagging the domain, indicating either a lack of prior detection or evasion techniques. The SSL certificate is issued by Google Trust Services, and the site employs HSTS and HTTP/3 protocols, which may lend an appearance of legitimacy despite the underlying threat. Users who visited trazorbridge.pages.dev should take immediate action to mitigate potential risks. Disconnect any Trezor devices from the computer and avoid reinstalling any software downloaded from the domain. Perform a full system scan using updated security tools to detect malware or unauthorized modifications. Reset any credentials or recovery seeds associated with Trezor devices, and monitor accounts for unauthorized transactions. If the official Trezor Bridge software was previously installed, verify its integrity through the vendor’s official website and reinstall from a trusted source. Given the domain’s impersonation of critical security software, affected users should treat this incident as a potential compromise of their wallet infrastructure.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
取证情报
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of trazorbridge.pages.dev · checked Jun 26, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控