trexor-cdn[.]framer[.]ai
“Trezor Bridge Install Guide – Fix Connection Issues Quickly”
trexor-cdn.framer.ai — 内容不可用. 品牌冒充:Trezor; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 14/91 (ChainPatrol, alphaMountain.ai, CyRadar, Emsisoft, Forcepoint ThreatSeeker); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 92/100. 注册商: CSC.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, trexor-cdn.framer.ai, poses a high-risk brand impersonation threat targeting Trezor, a well-known cryptocurrency hardware wallet provider. The site hosts a fraudulent page titled 'Trezor Bridge Install Guide – Fix Connection Issues Quickly,' designed to deceive users into believing they are accessing official Trezor support resources. Instead, visitors may be exposed to malicious downloads, credential harvesting, or other forms of exploitation aimed at compromising cryptocurrency assets or sensitive account information. The use of a legitimate-sounding title and infrastructure mimicking a content delivery network increases the likelihood of successful deception, particularly among users seeking technical assistance for Trezor products. Analysis indicates this domain was registered on January 6, 2018, through CSC Corporate Domains, Inc., a registrar commonly used for both legitimate and malicious purposes. Despite its age, the domain has only been flagged by 2 out of 95 security vendors on VirusTotal, suggesting it may evade detection by some automated systems. The site resolves to the IP address 31.43.161.6 and uses a Let's Encrypt SSL certificate, which provides encryption but does not validate the legitimacy of the site’s content. The combination of a low detection rate, active status, and targeted impersonation of a trusted brand underscores the sophistication of this threat and its potential to mislead even cautious users. If you have visited trexor-cdn.framer.ai or interacted with its content, immediate action is required to mitigate potential risks. First, disconnect the device used to access the site from any networks and avoid entering credentials or downloading files. Scan the device with updated security tools to detect and remove any malicious software. If cryptocurrency wallets or accounts were accessed, consider transferring assets to a new wallet and revoking any connected sessions or authorizations. Monitor accounts for unauthorized transactions and enable multi-factor authentication where available. Report the domain to relevant security teams or abuse contacts to aid in takedown efforts and prevent further victimization.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of trexor-cdn.framer.ai · checked Jun 26, 2026
证据与外部报告
PD-20260626-19A1D2 Recipient: abuse@framer.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。