सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 15। किसी मैच की रिपोर्ट करने वाली सार्वजनिक ब्लॉक सूचियाँ: 2। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
डोमेन सुरक्षा और ख़तरे की आसूचना

trzor-bridge-auth[.]typedream[.]app

“Trezor Bridge® | Secure Connection for Trezor® Hardware Wallets”

धमकी भरा फैसला गंभीर 95/100 साक्ष्य स्कोर
उपलब्धता सामग्री अनुपलब्ध नवीनतम अवलोकन में सामग्री अनुपलब्ध थी
वायरस का कुल पता लगाना: 15/91 संग्रहीत ब्लॉकलिस्ट मिलान: 2 ब्रांड प्रतिरूपण: Trezor
29/06/2026 Trezor CDN
रिपोर्ट सारांश

trzor-bridge-auth.typedream.app — सामग्री अनुपलब्ध. ब्रांड प्रतिरूपण: Trezor; घोटाले का प्रकार: Seed Phrase Theft. साक्ष्य सारांश: VirusTotal 15/91 (ChainPatrol, alphaMountain.ai, BitDefender, CyRadar, Emsisoft); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 95/100. रजिस्ट्रार: Typedream.

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

साक्ष्य सारांश
आलोचनात्मक
संदर्भ
39A1F7E4
स्कोर
95/100

This domain, trzor-bridge-auth.typedream.app, is flagged as a high-risk brand impersonation threat targeting Trezor, a well-known hardware wallet provider. Analysis indicates the site mimics the official Trezor Bridge interface, presenting itself as 'Trezor Bridge® | Secure Connection for Trezor® Hardware Wallets.' The objective appears to be credential theft or crypto asset compromise, likely through a crypto drainer mechanism embedded in the impersonated authentication flow. No specific drainer kit signature has been confirmed, but the domain structure and page content strongly suggest intent to deceive users into disclosing sensitive wallet credentials or executing unauthorized transactions. Infrastructure analysis reveals the domain resolves to the IP address 188.114.97.3, which is associated with a content delivery network but has been linked to prior malicious activity in other campaigns. The domain is registered through Typedream, a platform that allows rapid deployment of web pages without stringent verification. As of the latest scan, VirusTotal reports 4 out of 95 security vendors flagging the domain as malicious, indicating moderate but growing detection. The SSL certificate is issued by Google Trust Services, providing a superficial layer of legitimacy while failing to mitigate the underlying threat. No creation date is publicly available, and Google Safe Browsing has not yet listed the domain, leaving users without browser-based warnings. Blocklist aggregators show minimal coverage, with only a handful of threat intelligence feeds currently tracking this URL. The domain remains active and continues to host the fraudulent Trezor Bridge interface, posing an ongoing risk to users who may mistake it for the legitimate service. No takedown or suspension has been observed at the registrar or hosting level, and the site remains accessible without restrictions. Users are advised to verify the authenticity of any Trezor-related domain by cross-referencing with the official website and avoiding interaction with untrusted links. Given the high-risk nature of this campaign, immediate reporting to security teams and wallet providers is recommended to mitigate potential asset loss. The lack of widespread detection underscores the need for heightened vigilance, particularly among users of hardware wallets.

VirusTotal
VirusTotal
15 det.
सीएफ रडार
दुर्भावनापूर्ण
URLScan
यूआरएलस्कैन
TLS प्रमाणपत्र
Google Trust Services / WE1 8d
देखी गई स्थिति
सामग्री अनुपलब्ध
PhishDestroy
विनाश सूची
सूचीबद्ध
डेटा कवरेज VirusTotal 15 / 91 यूआरएलक्वेरी जाँच नहीं की गई फ़िशस्टैट्स जाँच नहीं की गई ओटीएक्स no community references सीएफ रडार provider verdict: malicious URLScan capture संग्रहित रिपोर्ट URLScan verdict malicious डीएनएस ब्लॉक जाँच नहीं की गई TLS valid certificate, 8d कौन है not parsed स्क्रीनशॉट 2 captures · 2 sources चेन पुनर्निर्देशित करें जांच नहीं की गई
नेटवर्क सुरक्षा इंटेलिजेंस
CF Cloudflare Radar Verdict दुर्भावनापूर्ण
Phishing

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
15/16

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict दुर्भावनापूर्ण score 100 Phishing brand: Trezor report ↗
सर्वर / ASN cloudflare · AS13335 CLOUDFLARENET - Cloudflare, Inc., US
IP Context Cloudflare shared edge origin IP hidden एज-आईपी प्रतिष्ठा इस डोमेन के लिए जिम्मेदार नहीं है।
प्लेटफ़ॉर्म प्रदाता Typedream
IP पता 104.21.37.85 CDN
भौगोलिक स्थानUS San Francisco, US
नेटवर्कAS13335 · Cloudflare, Inc.
रिवर्स IPviewdns.info → rapiddns.io →
मूल आईपी सीडीएन प्रॉक्सी के पीछे छिपा हुआ है। किनारे के पते के लिए रिवर्स-आईपी परिणामों में असंबंधित किरायेदार शामिल हैं; मूल का पता लगाने के लिए निष्क्रिय DNS या प्रमाणपत्र-पारदर्शिता डेटा की आवश्यकता होती है।
पहली अनुपलब्धता तक का समय 1h
हम क्या मापते हैं पहली संग्रहीत दुरुपयोग रिपोर्ट से लेकर पहली बार अवलोकन तक कि सामग्री अनुपलब्ध थी, बीता हुआ समय। इससे कारण स्थापित नहीं होता.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला29/06/2026
DOM Analysisanalyzed 29/07/2026score 0/1002 brand signals
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://trzor-bridge-auth.typedream.app/
TLS Fingerprint
TLS Observationvalid from 28/05/2026scanned 29/06/2026
TLS SAN Domainstypedream.app
पेज शीर्षक
Trezor Bridge® | Secure Connection for Trezor® Hardware Wallets
Impersonates
Base Trezor
TLS प्रमाणपत्र
Valid transport encryption · जारीकर्ता Google Trust Services / WE1 · valid for 8 days
तकनीकें · 10 identified
Node.js
Programming languages

Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.

nodejs.org 100% विश्वास
React
JavaScript frameworks

React is an open-source JavaScript library for building user interfaces or UI components.

reactjs.org 100% विश्वास
Google Cloud
IaaS

Google Cloud is a suite of cloud computing services.

cloud.google.com 100% विश्वास
Next.js
JavaScript frameworks Web frameworks

Next.js is a React framework for developing single page Javascript applications.

nextjs.org 100% विश्वास
Google Cloud Trace
Performance

Google Cloud Trace is a distributed tracing system that collects latency data from applications and displays it in the Google Cloud Console.

cloud.google.com 100% विश्वास
Google Cloud CDN
CDN

Cloud CDN uses Google's global edge network to serve content closer to users.

cloud.google.com 100% विश्वास
cdnjs
CDN

cdnjs is a free distributed JS library delivery service.

cdnjs.com 100% विश्वास
Cloudflare
CDN

Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.

www.cloudflare.com 100% विश्वास
Webpack
Miscellaneous

Webpack is an open-source JavaScript module bundler.

webpack.js.org 100% विश्वास
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org 100% विश्वास
Detected via क्लाउडफ्लेयर रडार · Wappalyzer engine
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

15 / 91 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed
चेनपैट्रोल
alphaMountain.ai
BitDefender
साइरेडार
Emsisoft
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
कास्परस्की
Lionic
नेटक्राफ्ट
ओपनफ़िश
PhishFort
सोफोस
साइट प्रदर्शन विश्लेषण

Google PageSpeed Insights — mobile performance audit of trzor-bridge-auth.typedream.app · checked Jun 29, 2026

95
Good
Performance
FCP
1.5s
First Contentful Paint
LCP
2.85s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
1.93s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
साइट कॉन्फ़िगरेशन विश्लेषण
Stored observations are retained with their original collection time.
robots.txt Present · HTTP 200
Valid robots.txt; no Disallow/Allow paths were extracted.

साक्ष्य और बाहरी रिपोर्टें

Third-Party Detection — ChainAbuse
1 report filed for trzor-bridge-auth.typedream.app · category: Impersonation · source checked
Flagged by automated brand-abuse detection on Jun 29, 2026 — automated submission, not a user testimony. Source: ChainAbuse (TRM Labs).

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/trzor-bridge-auth.typedream.app"
  title="PhishDestroy threat report for trzor-bridge-auth.typedream.app"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>