dydxdefi-trade[.]typedream[.]app
“Home | DYDX Trade BTC, ETH & More”
dydxdefi-trade.typedream.app — Konten tidak tersedia. Peniruan identitas merek: dYdX; Jenis penipuan: Crypto Scam. Ringkasan bukti: VirusTotal 11/95 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, CyRadar); Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 88/100. Registrar: Typedream.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
On July 24, 2026 the domain dydxdefi-trade.typedream.app was observed delivering a brand‑impersonation campaign targeting the cryptocurrency exchange dYdX. The site resolves to the Cloudflare edge address 172.67.206.36, which is associated with ASN 13335 and hosted in the United States. The TLS certificate is issued by Google Trust Services under the WE1 authority, confirming the use of Google’s public PKI. HTTP requests return a 404 status, and the page title reported by scanners reads “Home | DYDX Trade BTC, ETH & More”, indicating a deliberate attempt to lure users interested in trading digital assets.
Infrastructure analysis shows a typical modern JavaScript stack: Node.js, React, Next.js, Webpack, and Google Cloud services including Cloud Trace and Cloud CDN, all fronted by Cloudflare. The domain was registered through the Typedream platform, a low‑cost website builder, and received a Scamadviser trust score of 11 / 100, reflecting a high likelihood of malicious intent. Threat‑intelligence feeds have flagged the domain on at least one security blocklist, and Google Safe Browsing categorises it as social engineering. VirusTotal scans reported 11 positive detections out of 95 vendors, reinforcing the malicious classification.
The site has been taken offline and is listed as blocked by the PhishDestroy mitigation service. While the exact phishing kit or credential‑harvesting mechanism has not been disclosed, the combination of a brand‑specific page title, low trust score, and multiple vendor detections strongly suggests a crypto‑focused scam designed to steal funds or credentials from dYdX users. Defenders should continue to block the domain at DNS and proxy layers, monitor for any residual traffic to the associated IP address, and update detection signatures to include the observed page title and technology fingerprint. Ongoing observation is recommended to detect possible re‑hosting under different subdomains or similar Typedream‑based deployments.
Sinyal Keamanan
Intelijen Keamanan Jaringan
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Teknologi · 9 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org Keyakinan 100%React is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org Keyakinan 100%Next.js is a React framework for developing single page Javascript applications.
nextjs.org Keyakinan 100%Google Cloud Trace is a distributed tracing system that collects latency data from applications and displays it in the Google Cloud Console.
cloud.google.com Keyakinan 100%Cloud CDN uses Google's global edge network to serve content closer to users.
cloud.google.com Keyakinan 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Keyakinan 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Keyakinan 100%Analisis VirusTotal
Bukti Terarsip
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive