advance-treser-wallet[.]pages[.]dev
“Trezor Start® | Expert Wallet Tips & Recovery Guide”
advance-treser-wallet.pages.dev — يمكن الوصول إليها · الوصول مقيد (HTTP 403). انتحال العلامة التجارية: Trezor; نوع الاحتيال: Seed Phrase Theft. ملخص الأدلة: VirusTotal 13/94 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET); URLQuery 1 alert; URLScan malicious verdict; PhishDestroy score 94/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy identifies advance-treser-wallet.pages.dev as a live crypto drainer domain currently active in the wild. This threat specifically targets cryptocurrency users by mimicking a legitimate wallet service interface to trick victims into connecting their digital assets to malicious smart contracts. The domain employs evasion techniques through Cloudflare infrastructure while maintaining a fraudulent SSL certificate to appear legitimate. Users interacting with this domain risk immediate financial loss as the drainer executes unauthorized cryptocurrency transfers upon wallet connection.
According to PhishDestroy's telemetry, this domain was flagged by 13 of 95 VirusTotal security vendors, indicating elevated threat recognition among professional security tools. The domain resolves to IP address 188.114.96.3 through Cloudflare, Inc., which serves as both the hosting provider and domain registrar. The SSL certificate is issued by Google Trust Services, providing a false sense of security to potential victims. Despite its technical sophistication, this domain shows clear malicious intent through its crypto drainer functionality and should be considered a high-risk threat until proven otherwise.
This domain remains in active operation as of the latest intelligence update, with the unique seed identifier d4fb09 confirming its presence in PhishDestroy's threat database. Users are strongly advised to avoid interacting with advance-treser-wallet.pages.dev or any similar wallet impersonation domains. Security researchers should block this IP (188.114.96.3) at the network perimeter and flag the domain across all security controls. For those with existing browser histories of this domain, PhishDestroy recommends immediate system scans for cryptocurrency wallet extensions and thorough review of recent blockchain transactions for unauthorized transfers. Always verify wallet domains through official sources before any cryptocurrency operations.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | advance-treser-wallet.pages.dev |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
تحليل VirusTotal
الأدلة المؤرشفة
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of advance-treser-wallet.pages.dev · checked Apr 13, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب