advance-treser-wallet[.]pages[.]dev
“Trezor Start® | Expert Wallet Tips & Recovery Guide”
advance-treser-wallet.pages.dev — Ulaşılabilir · erişim kısıtlı (HTTP 403). Marka kimliğine bürünme: Trezor; Dolandırıcılık türü: Seed Phrase Theft. Kanıt özeti: VirusTotal 13/94 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET); URLQuery 1 alert; URLScan malicious verdict; PhishDestroy score 94/100. Kayıt kuruluşu: Cloudflare.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
PhishDestroy identifies advance-treser-wallet.pages.dev as a live crypto drainer domain currently active in the wild. This threat specifically targets cryptocurrency users by mimicking a legitimate wallet service interface to trick victims into connecting their digital assets to malicious smart contracts. The domain employs evasion techniques through Cloudflare infrastructure while maintaining a fraudulent SSL certificate to appear legitimate. Users interacting with this domain risk immediate financial loss as the drainer executes unauthorized cryptocurrency transfers upon wallet connection.
According to PhishDestroy's telemetry, this domain was flagged by 13 of 95 VirusTotal security vendors, indicating elevated threat recognition among professional security tools. The domain resolves to IP address 188.114.96.3 through Cloudflare, Inc., which serves as both the hosting provider and domain registrar. The SSL certificate is issued by Google Trust Services, providing a false sense of security to potential victims. Despite its technical sophistication, this domain shows clear malicious intent through its crypto drainer functionality and should be considered a high-risk threat until proven otherwise.
This domain remains in active operation as of the latest intelligence update, with the unique seed identifier d4fb09 confirming its presence in PhishDestroy's threat database. Users are strongly advised to avoid interacting with advance-treser-wallet.pages.dev or any similar wallet impersonation domains. Security researchers should block this IP (188.114.96.3) at the network perimeter and flag the domain across all security controls. For those with existing browser histories of this domain, PhishDestroy recommends immediate system scans for cryptocurrency wallet extensions and thorough review of recent blockchain transactions for unauthorized transfers. Always verify wallet domains through official sources before any cryptocurrency operations.
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | advance-treser-wallet.pages.dev |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal Analizi
Arşivlenmiş Kanıtlar
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of advance-treser-wallet.pages.dev · checked Apr 13, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin