MALICIOUS — CRITICAL
فحص التصيد والأمان للنطاق ttrdoc.alian35.workers.dev
ttrdoc[.]
PhishDestroy identifies ttrdoc.alian35.workers.dev as an active crypto drainer phishing domain.
- VirusTotal
- 11/92
- Blocklists
- 2 · MetaMask, SEAL
- التوفر
- يمكن الوصول إليها · الوصول مقيد · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
ttrdoc.alian35.workers.dev — يمكن الوصول إليها · الوصول مقيد (HTTP 403). انتحال العلامة التجارية: Sui; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 11/92 (ADMINUSLabs, alphaMountain.ai, BitDefender, Forcepoint ThreatSeeker, Fortinet); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 83/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
PhishDestroy identifies ttrdoc.alian35.workers.dev as an active crypto drainer phishing domain.
This domain is currently categorized under generic phishing threats and poses an elevated risk to users. It resolves to IP address 172.67.218.51, has been blocked by MetaMask, and appears on 1 security blocklist. The domain uses Google Trust Services for its SSL certificate and is registered through Cloudflare, Inc. Security vendor analysis via VirusTotal shows 3 of 95 vendors flagging this domain as malicious.
While specific creation dates are unavailable, the presence of active phishing infrastructure and third-party detections indicate ongoing malicious activity. Given the involvement of crypto drainer components and the domain’s blocklist status, users should avoid interacting with this site entirely. PhishDestroy recommends reporting suspicious domains through official MetaMask channels and verifying website authenticity via independent security databases before any cryptocurrency-related transactions.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
نطاق تغطية البيانات12 recorded checks
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 9 identified
Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com ثقة 100٪jQuery CDN is a way to include jQuery in your website without actually downloading and keeping it your website's folder.
code.jquery.com ثقة 100٪jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com ثقة 100٪HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org ثقة 100٪Google Analytics is a free web analytics service that tracks and reports website traffic.
google.com ثقة 100٪Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of ttrdoc.alian35.workers.dev · checked May 16, 2026
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.