welcome-suite-treoz[.]typedream[.]app
“Trezor™ Suite | (Official) | Desktop & Web Crypto® Management”
welcome-suite-treoz.typedream.app — Contenuto non disponibile. Simulazione del marchio: Sui; Tipo di truffa: Crypto Scam. Riepilogo delle prove: VirusTotal 10/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); CF Radar malicious; PhishDestroy score 80/100. Registrar: Squarespace Domains II.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Analysis indicates that the domain welcome-suite-treoz.typedream.app was registered on 21 February 2026 through Squarespace Domains II LLC. DNS resolution points to the IPv4 address 104.21.37.85, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. The site served a TLS certificate issued by Google Trust Services under the WE1 identifier, confirming the use of Google’s certificate infrastructure. HTTP probing returned a 404 status code, suggesting that the landing page is no longer publicly reachable at the time of analysis. The page title observed during earlier collection was “Trezor™ Suite | (Official) | Desktop & Web Crypto® Management”, and the underlying stack was identified as Node.js with React and Next.js, hosted on Google Cloud and delivered through Google Cloud CDN and Cloudflare services, including Cloudflare Browser Insights.
The domain is classified as a brand‑impersonation crypto scam targeting the Sui ecosystem. Ten of ninety‑five VirusTotal scanners flagged the domain as malicious, and it appears on a single external blocklist, where it has been listed by PhishDestroy. The risk rating is elevated, although the current status is offline.
Defenders should continue to block the host IP 104.21.37.85 and the fully qualified domain name, update any URL filtering rules to include the domain, and monitor for re‑use of the same registrar or hosting provider in future campaigns. Because the site is no longer serving content, active takedown actions are limited, but threat‑intel sharing with sink‑hole operators and inclusion in reputation feeds will help prevent resurgence. Attribution beyond the observed infrastructure remains uncertain; no additional malicious payloads or command‑and‑control endpoints have been disclosed.
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Tecnologie · 10 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org Confidenza al 100%React is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org Confidenza al 100%Next.js is a React framework for developing single page Javascript applications.
nextjs.org Confidenza al 100%Google Cloud Trace is a distributed tracing system that collects latency data from applications and displays it in the Google Cloud Console.
cloud.google.com Confidenza al 100%Cloud CDN uses Google's global edge network to serve content closer to users.
cloud.google.com Confidenza al 100%Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com Confidenza al 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Confidenza al 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confidenza al 100%Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of welcome-suite-treoz.typedream.app · checked Mar 2, 2026
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo