trezor-io-strt-ita[.]webflow[.]io
“trezor-io-strt-ita”
trezor-io-strt-ita.webflow.io — 内容不可用. 品牌冒充:Trezor; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 16/91 (ChainPatrol, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. 注册商: MarkMonitor.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, trezor-io-strt-ita.webflow.io, poses a high-risk threat as a brand impersonation site targeting Trezor, a cryptocurrency hardware wallet provider. The site is designed to deceive users into believing they are interacting with an official Trezor platform, potentially leading to unauthorized access to sensitive credentials, recovery phrases, or private keys. Such attacks often result in the theft of cryptocurrency assets through fake login portals or crypto drainer scripts embedded in the page. The domain leverages the Trezor brand to exploit trust, a common tactic in phishing campaigns targeting financial and crypto-related services. Analysis indicates this domain is malicious based on multiple technical indicators. VirusTotal reports that 9 out of 95 security vendors flag the domain as malicious, reflecting a consensus among detection engines. The domain was created on May 8, 2013, though the subdomain or current malicious activity likely represents a recent compromise or repurposing of an older Webflow-hosted resource. It is registered through MarkMonitor, Inc., a registrar commonly used for legitimate domains but also abused for impersonation due to its credibility. The site resolves to the IP address 172.64.151.8, which is associated with cloud-based hosting infrastructure that may obscure the true origin of the threat. Additionally, the domain appears on three security blocklists, further confirming its malicious intent. Users who have visited trezor-io-strt-ita.webflow.io should take immediate action to mitigate potential risks. First, disconnect any active sessions with the site and avoid entering any credentials or recovery phrases. If any sensitive information was submitted, assume it has been compromised and revoke access to associated accounts or wallets. Users should initiate a full scan of their device using updated security tools to detect any malware or unauthorized scripts that may have been downloaded. For cryptocurrency wallets, generate new recovery phrases and transfer assets to a new, secure wallet if there is any suspicion of exposure. Monitor all linked accounts for unauthorized transactions and enable multi-factor authentication where possible. Finally, report the domain to relevant security teams or blocklist providers to aid in broader mitigation efforts.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of trezor-io-strt-ita.webflow.io · checked Jun 26, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。