logahontezor.gitbook.io
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of logahontezor.gitbook.io
This URL appears to be a GitBook-hosted page presenting itself as a Trezor login or setup guide for U.S. users. The page title, metadata, and visible content reference Trezor hardware wallets, crypto security, wallet access, PIN entry, and identity verification, suggesting that the page is attempting to mimic or discuss cryptocurrency wallet onboarding and account access.
Based on the hosting pattern, the content does not appear to be operated on Trezor's primary branded domain, but instead on a subdomain of gitbook.io, which is a documentation publishing platform. The page layout resembles a documentation or help article rather than an official product portal, and the branding references indicate it may be targeting users looking for Trezor login or wallet access information.
The domain itself is part of the broader gitbook.io platform, which is an established documentation service, but this specific subpage appears to be user-published content rather than an official corporate property. In this case, the content theme and naming strongly suggest a cryptocurrency wallet-related page that may be attempting to attract Trezor users.
Safety Assessment for logahontezor.gitbook.io
Several security signals raise concern about this page at the time of this scan. It was flagged by 7 out of 91 security engines, with multiple detections describing the page as phishing or otherwise malicious. In addition, the visible content uses Trezor branding and login-oriented wording while being hosted on a third-party documentation platform rather than an apparent official Trezor domain, which may indicate an impersonation attempt aimed at cryptocurrency users.
At the same time, not every scan source agreed: the malware file scan reported no flagged files, and major content-malice blacklist databases in the provided data did not report listings at the time of this scan. However, the domain's IP address is listed on one mail-reputation blocklist, which is a weaker signal and does not by itself prove harmful website content. Even so, the combination of multi-engine phishing detections and branding that appears inconsistent with the hosting location materially increases risk.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The page is served over HTTPS with a valid TLS certificate issued by Google Trust Services, and it is fronted by Cloudflare infrastructure on IP address 172.64.147.209. The hosting environment appears to rely on Cloudflare for delivery, while the content itself is published through GitBook. DNSSEC is unsigned, which is common but means DNS responses do not appear to benefit from DNSSEC validation.
From a technical standpoint, no malicious files or flagged external links were identified in the provided malware scan, and no iframes were present. However, the main concern here appears to be content-level abuse or phishing-style impersonation rather than exploit delivery. The use of a third-party publishing platform for a page that references wallet login and identity verification may warrant extra caution.
Share your experience with this website. Was it safe? Did you encounter any issues?