trezer-login-usa[.]pages[.]dev
“Suspected phishing site | Cloudflare”
trezer-login-usa.pages.dev — 内容不可用. 品牌冒充:Genericcloudflare; 诈骗类型:Credential Phishing. 证据摘要: VirusTotal 16/93 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CRDF); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 100/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of the domain trezer-login-usa.pages.dev, observed on 23 July 2026, indicates it is being used for credential phishing. The domain was registered through Cloudflare on 21 February 2026 and points to the IP address 172.66.44.145, which belongs to AS13335 Cloudflare, Inc., located in the United States. The site is protected by an SSL certificate issued by Google Trust Services under the WE1 root, and the HTTP response returned a 403 status code, consistent with the page title “Suspected phishing site | Cloudflare”. Cloudflare’s infrastructure is evident from the presence of HSTS, HTTP/3, and the nameservers matteo.ns.cloudflare.com and mina.ns.cloudflare.com.
Reputation services rate the domain extremely poorly: Gridinsoft assigns a trust score of 0/100, Scamadviser a score of 1/100, and the domain appears on one security blocklist. VirusTotal scans show that 16 of 93 antivirus and URL‑analysis engines flagged the domain as malicious, reinforcing the phishing classification. The site has been taken offline and is currently blocked by the PhishDestroy service, which returned a 403 HTTP status. While the available data confirms the credential‑phishing intent, the exact target brand or the content of the phishing page cannot be verified because the page was not captured before takedown.
Consequently, defenders cannot confirm which login credentials are being harvested, nor can they assess any additional payloads that might have been delivered. Defensive recommendations include adding the domain and its resolving IP address to local blocklists, monitoring for any future DNS resolution changes, and ensuring that web filtering solutions incorporate the observed blocklist entry. Organizations should also educate users about the risk of unsolicited login prompts referencing “trezer‑login‑usa” and enforce multi‑factor authentication to mitigate credential compromise.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
取证情报
所用技术 · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of trezer-login-usa.pages.dev · checked Mar 2, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。