Bitcoin Forum

Bitcoin => Wallet software => Topic started by: aoluain on November 27, 2019, 10:13:27 PM



Title: BEWARE - Fake Trezor Web Page = Triezor.io
Post by: aoluain on November 27, 2019, 10:13:27 PM
Just happened across this today.
I typed Trezor into a google search and the first result gave me a google AD - w ww.triezor.io
and when I follow the link the web address changes to https://tlezor.io/wallet/

Just drawing attention to this, I recon someone could easily get caught if in a hurray.

Here are some screenshots of how the site tries to extract your private seed:

Search result for Trezor:

https://1.bp.blogspot.com/-mvWQ-BgcHs0/Xd7zeRn8cKI/AAAAAAAAAaw/-GJ-vjfXzkQ6ec2rnqOCeAy5eAdgkPYSQCNcBGAsYHQ/s1600/Capture01.PNG

Following the AD:
The web address is different to that suggested in the search
The site looks identical

https://1.bp.blogspot.com/-tKqWOWoQdEM/Xd7yyRuv0rI/AAAAAAAAAZ0/weAjnuiL-34k3Qlbo2X25m6uvz7dQ5o8ACNcBGAsYHQ/s1600/Capture02.PNG

Clicking on Trezor one as you would do normally results in the next identical page [obviously without a trezor connected]
also with official vid about the hologram

https://1.bp.blogspot.com/-fLW16qTwBOE/Xd7yxEK-2YI/AAAAAAAAAZw/HnW70o0Bl4Ubsvl8E8i6VOXHmXE2H4yEwCNcBGAsYHQ/s1600/Capture03.PNG

after pressing "continue to wallet" the page is Prompting for your Trezor to be connected:

https://1.bp.blogspot.com/-0gaqXcAz5dE/Xd7zFOV_bhI/AAAAAAAAAac/us8lUNBt3kcAyHit1NRRxgaH8dwrBNiwwCNcBGAsYHQ/s1600/Capture035.PNG

And after about 5 seconds the page automatically prompts for the seed input

https://1.bp.blogspot.com/-UeV7hfDkkX4/Xd7yyyzG0MI/AAAAAAAAAZ4/wjBWRcQirfYjKM7bBcDXs0LMM92m8SVQQCNcBGAsYHQ/s1600/Capture04.PNG



Title: Re: BEWARE - Fake Trezor Web Page = Triezor.io
Post by: BitMaxz on November 27, 2019, 10:43:54 PM
It seems they forgot to copy the homepage of the real trezor homepage

https://i.imgur.com/fsBDxvv.png

These scammers always keep making ads in Google they abuse the free $100 coupon for newly registered Adwords account.

If you found a fake website like this always report them at Google safe browsing from here https://safebrowsing.google.com/safebrowsing/report_phish/?hl=en


Title: Re: BEWARE - Fake Trezor Web Page = Triezor.io
Post by: aoluain on November 27, 2019, 11:32:20 PM
Scammers always find ways to try and catch us off guard,
We can only try and highlight all of their traps.

I have it reported to Google but yea it looks like there will be
another to replace the deleted one.

Stay vigilant and check the web address to key sites before
inputting any sensitive info like passwords for example.


Title: Re: BEWARE - Fake Trezor Web Page = Triezor.io
Post by: Pmalek on November 28, 2019, 09:34:42 AM
I don't see the AD on my end. Could be that google already removed it but thank you for warning the community.
Another site requesting the users to enter their seed words online which should never happen!

The accompanying documentation states:
DO NOT DISCLOSE THE SEED TO ANYBODY!

https://wiki.trezor.io/images/TrezorOneRefreshedRecoveryCards.jpeg


Title: Re: BEWARE - Fake Trezor Web Page = Triezor.io
Post by: o_e_l_e_o on November 29, 2019, 11:22:27 AM
Stop using Google to find the website of exchanges, services, or wallets.

Stop following random links without checking the URL.

Start using uBlock Origin.

Never type your seed in anywhere.

How many times does this need repeated?


Title: Re: BEWARE - Fake Trezor Web Page = Triezor.io
Post by: aoluain on November 29, 2019, 01:26:53 PM
Correct,

We all need to be vigilant, AT ALL TIMES
A moment's lapse of concentration and we can be tricked.

I can see how someone could be easily caught out if you
don't know the exact web address and they use a seemingly
harmless search.


Title: Re: BEWARE - Fake Trezor Web Page = Triezor.io
Post by: philipma1957 on November 29, 2019, 02:03:28 PM
as a different subject trezor has  a black friday  sale coupon 30% off

I just purchased a model T today.


I saw this thread and remembered that the coupon was good for the next few days. So I want to thank op for warning and for reminding me of black friday sale


TRZR30


the official  trezor is         trezor.io

note spelling



https://shop.trezor.io/  

  I used this link to shop with them.  They do take a CC  


I have a gray, white, black set of model ones and now the t model


Title: Re: BEWARE - Fake Trezor Web Page = Triezor.io
Post by: Lucius on November 29, 2019, 02:29:57 PM
Nothing new, it seems that the team that started cheating on Ledger users also turned to Trezor users. I warned about this earlier this month, and the method is the same, fake site with warning that you may lose funds if device is disconnected and asking for seed.

Cheap trick which will not work for anyone who knows basic, seed is only for hardware wallet and AdBlock will block all Google ads.

Ledger Fake Site/s - Seed stealers! (https://bitcointalk.org/index.php?topic=5198563.0)


Title: Re: BEWARE - Fake Trezor Web Page = Triezor.io
Post by: hugeblack on November 30, 2019, 07:50:49 AM
That site has been reported and blocked by MetaMask "Phishing Detection."
Stop using Google to visit trusted sites.

I don't see the AD on my end. Could be that google already removed it but thank you for warning the community.

It seems that they have taken some actions but it is better for them to update the algorithm of the first page/ad.

I have it reported to Google but yea it looks like there will be
another to replace the deleted one.
The way ads appear varies from country to country, from site to site and depends on a lot of factors so you won't see the same ad content for everyone in the world.