learn-en-bridge-sso[.]typedream[.]app
“Trezor Bridge® | Secure Connection for Trezor® Hardware Wallets”
learn-en-bridge-sso.typedream.app — مغطى بعباءة · يمكن الوصول إليه. انتحال العلامة التجارية: Trezor; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 18/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLQuery 3 alerts; URLScan malicious verdict; CF Radar malicious; cloaking observed; PhishDestroy score 100/100. مسجّل النطاق: Typedream.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy identifies learn-en-bridge-sso.typedream.app as an active credential theft domain posing as a legitimate SSO login page. This domain is designed to mimic official Single Sign-On portals, tricking users into entering their login credentials under false pretenses. The threat actor behind this campaign appears to be targeting users expecting secure access points, likely for account takeover or further exploitation in downstream attacks. This domain resolves to IP address 188.114.96.3 and is associated with a Google Trust Services SSL certificate, which may contribute to its appearance of legitimacy. VirusTotal analysis shows 12 out of 95 security vendors flagging this domain as malicious. The domain was registered through a privacy-protected registrar and currently shows no blocklist entries in major threat intelligence feeds. The precise creation date is not publicly disclosed, but the domain remains active at the time of this assessment. Users should immediately block access to this domain and avoid entering any credentials or sensitive information. Organizations are advised to update firewall rules and endpoint protections to block traffic to 188.114.96.3. The elevated risk level and confirmed malicious indicators warrant high-priority response actions to prevent credential compromise and potential follow-on attacks. Remaining risk is elevated due to the active nature of the domain and the use of trusted certificate authorities to enhance deception.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | learn-en-bridge-sso.typedream.app |
malicious | Sinkholed |
| DNS4EU | learn-en-bridge-sso.typedream.app |
malicious | Sinkholed |
| OpenDNS | learn-en-bridge-sso.typedream.app |
phishing | Phishing Block |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 11 identified
JavaScript runtime built on Chrome V8 engine for server-side development.
JavaScript library for building user interfaces with component-based architecture.
Suite of cloud computing services running on Google infrastructure.
React framework for production with hybrid static and server rendering.
Content delivery network built on Google global edge infrastructure.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comModule bundler for modern JavaScript applications.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
تحليل VirusTotal
الأدلة المؤرشفة
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of learn-en-bridge-sso.typedream.app · checked Apr 15, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب