tech-suite.pages[.]dev
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of tech-suite.pages[.]dev
The domain tech-suite.pages[.]dev appears to host a landing page themed around “Trezor Suite,” presenting itself as a download page for cryptocurrency wallet software associated with Trezor hardware wallets. The screenshot shows branding, navigation links such as Home, Features, About, and Download, and a prominent call-to-action button encouraging visitors to obtain the software.
Based on the page title, visible content, and hosting pattern, this does not appear to be an official primary brand domain. Instead, it appears to be a page deployed on a shared hosting subdomain under pages.dev, which is commonly used for static site hosting. The content suggests a cryptocurrency-related service, but the domain naming and hosting context may indicate an unofficial or potentially impersonating page rather than a verified vendor-operated website.
Safety Assessment for tech-suite.pages[.]dev
Multiple signals raise concern about this website at the time of this scan. It was flagged by 11 out of 94 security engines, and several web-classification sources categorized it as phishing or fraud-related. The page content also appears to reference Trezor Suite while operating from tech-suite.pages[.]dev rather than an obvious official Trezor-owned domain, which may indicate that it is attempting to resemble a legitimate cryptocurrency wallet download page.
Although a malware scan did not detect malicious files in the small set of scanned resources, that does not materially reduce phishing risk. Phishing pages often rely on deceptive branding, credential harvesting, wallet-seed theft, or malicious download prompts without necessarily containing easily detectable malware in static files. The lack of blacklist listings in some databases and the presence of valid HTTPS also should not be treated as proof of legitimacy, especially for a hosted page on a shared platform.
Based on these findings, this website may pose potential risks to visitors. Users should be especially cautious about downloading software, entering wallet credentials, or providing recovery phrases on this page.
Technical Description
The site is served over HTTPS with a valid TLS certificate and is hosted behind Cloudflare infrastructure on IP address 172.66.46.239, with nameservers also delegated to Cloudflare. The certificate status appears valid at the time of the scan, and the page is hosted on the pages.dev platform, which is commonly used for static content deployment. The domain itself is about 5 years old, which is older than many throwaway phishing domains, but this age alone does not verify the legitimacy of the current content.
From a security posture perspective, DNSSEC appears to be unsigned, and the use of a shared hosting platform can make attribution more difficult. No malicious files, flagged external links, or iframes were identified in the limited malware scan results provided, but the stronger concern here is social-engineering or impersonation risk rather than overt exploit delivery.
Share your experience with this website. Was it safe? Did you encounter any issues?