trezrsuiteweb[.]blogspot[.]com
“trezrsuiteweb.blogspot.com”
trezrsuiteweb.blogspot.com — 内容不可用. 品牌冒充:Trezor. 证据摘要: VirusTotal 20 detections (engine total unavailable); CF Radar malicious; PhishDestroy score 95/100. 注册商: Google Blogger.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain is flagged as a high-risk crypto wallet drainer, a threat type designed to siphon cryptocurrency assets by impersonating legitimate wallet management interfaces. Analysis indicates the domain mimics Trezor Suite Web, a trusted platform for crypto asset management, to deceive users into entering sensitive credentials or executing malicious transactions. Infrastructure analysis reveals the domain is hosted on Google Blogger, a free platform often exploited for phishing due to its accessibility and low barrier to entry. The domain resolves to IP address 142.251.110.132, associated with Google’s infrastructure, which may complicate traditional blocklisting efforts. VirusTotal detection rates show 20 out of 95 security vendors have flagged this domain as malicious, indicating moderate but significant consensus among threat intelligence sources. No creation date is publicly available due to the hosting platform’s limitations, and the domain remains active as of this assessment. No additional blocklists or trust scores were identified beyond the VirusTotal data. Mitigation steps for this specific threat type include immediately blocking the domain at the network level and alerting users to avoid interaction. Cryptocurrency users should verify the authenticity of any wallet interface by cross-referencing the URL with the official domain provided by the legitimate service. Multi-factor authentication (MFA) should be enforced for all wallet access, and users should avoid entering seed phrases or private keys into any web interface. Organizations handling cryptocurrency assets should implement endpoint detection and response (EDR) solutions to monitor for unauthorized transaction attempts. Security teams are advised to monitor for similar impersonation domains using variations of the brand name and to educate users on recognizing phishing indicators, such as mismatched URLs or unsolicited login prompts.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 6 identified
Blogger is a blog-publishing service that allows multi-user blogs with time-stamped entries.
www.blogger.com 置信度 100%Java is a class-based, object-oriented programming language that is designed to have as few implementation dependencies as possible.
java.com 置信度 100%Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 置信度 100%OpenGSE is a test suite used for testing servlet compliance. It is deployed by using WAR files that are deployed on the server engine.
code.google.com 置信度 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 置信度 100%VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。