access-faq-trezzr[.]typedream[.]app
“Trezor® Hardware® - Wallet | Getting Started”
The domain access-faq-trezzr.typedream.app is currently listed as an active generic phishing infrastructure with an elevated risk rating. Open-source intelligence indicates that the domain is blocked by both PhishDestroy and OpenPhish, confirming its presence on two reputable phishing blocklists. DNS resolution points to the IP address 172.67.206.36, which is shared by other malicious actors observed in recent threat reports. VirusTotal analysis shows that 15 out of 91 scanned security vendors have flagged the domain as malicious, reinforcing the suspicion of phishing behavior. The domain appears on two additional security blocklists, further corroborating its malicious reputation.
The available data does not include a page title, SSL certificate details, or explicit hosting provider information, so those vectors remain unverified. No evidence of a legitimate brand or targeted campaign has been disclosed, and the site’s content has not been publicly examined. However, the convergence of multiple blocklists, the detection count on VirusTotal, and the active status suggest that the domain is being used to harvest credentials or deliver fraudulent content. Defenders should prioritize immediate mitigation actions.
Network perimeter devices and DNS filtering solutions should be configured to deny any resolution of access-faq-trezzr.typedream.app and to block outbound connections to its resolved IP 172.67.206.36. Endpoint detection and response (EDR) tools should be updated with indicator of compromise (IOC) entries reflecting the domain name and IP address. Continuous monitoring of traffic logs for attempts to reach the domain or IP is advised, and any related alerts should be escalated for further investigation. Because the underlying hosting environment is not fully characterized, organizations may also consider broader threat‑intelligence feeds to capture any emerging associations with this infrastructure.
Network Security Intelligence
Threat Response Pipeline
Public Blocklist Status
Threat Intel Cross-Reference · source references
Technologies · 11 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org 100% confidenceReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% confidenceNext.js is a React framework for developing single page Javascript applications.
nextjs.org 100% confidenceGoogle Cloud Trace is a distributed tracing system that collects latency data from applications and displays it in the Google Cloud Console.
cloud.google.com 100% confidenceCloud CDN uses Google's global edge network to serve content closer to users.
cloud.google.com 100% confidenceCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% confidenceCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% confidenceHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% confidenceVirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of access-faq-trezzr.typedream.app · checked Aug 7, 2026
Site Configuration Analysis
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive