faqq-trezorr-start[.]typedream[.]app
“Trezor Suite (Official) | Desktop & Web Crypto® Management”
faqq-trezorr-start.typedream.app — İçerik kullanılamıyor. Marka kimliğine bürünme: Trezor; Dolandırıcılık türü: Crypto Scam. Kanıt özeti: VirusTotal 17/91 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, Chong Lua Dao); URLScan malicious verdict; Spamhaus DBL_ABUSED_PHISH; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 95/100. Kayıt kuruluşu: Typedream.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
This domain, faqq-trezorr-start.typedream.app, is identified as an active brand impersonation threat targeting Trezor, a well-known cryptocurrency hardware wallet provider. The site presents itself as the official Trezor Suite platform, using the page title 'Trezor Suite (Official) | Desktop & Web Crypto® Management' to deceive users into believing it is a legitimate interface for managing crypto assets. Analysis indicates the presence of a likely credential-harvesting or crypto drainer kit, designed to intercept user logins, seed phrases, or private keys, leading to unauthorized asset transfers and financial loss. Infrastructure analysis reveals multiple high-confidence technical indicators. The domain resolves to the IP address 188.114.97.3 and is registered through Typedream, a platform that enables rapid deployment of web pages without stringent identity verification. VirusTotal detection metrics show 17 out of 95 security vendors flagging the domain as malicious, while it appears on three independent security blocklists. The domain currently holds a Gridinsoft trust score of 0/100, indicating no reputable standing. The SSL certificate is issued by Google Trust Services, which, while technically valid, does not confer legitimacy to the site’s content or intent. No evidence of inclusion in Google Safe Browsing (GSB) was found in the provided data, though this may reflect detection latency rather than absence of risk. As of the latest assessment, the domain remains active and continues to host the fraudulent Trezor impersonation page. It is blocked by multiple security layers, including PhishDestroy, MetaMask, and SEAL, which have identified and mitigated the threat at the browser or network level. Despite these protections, the domain poses a persistent high-risk exposure, particularly to users who may bypass warnings or lack endpoint security controls. Immediate response actions include reporting the domain to the registrar for takedown, notifying hosting providers, and updating blocklists across security platforms. Users are strongly advised to verify domain authenticity by cross-referencing official sources, avoiding interaction with any site not explicitly linked from trezor.io, and employing hardware-based authentication methods to mitigate credential theft risks.
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 11 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org %100 güvenReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org %100 güvenNext.js is a React framework for developing single page Javascript applications.
nextjs.org %100 güvenGoogle Cloud Trace is a distributed tracing system that collects latency data from applications and displays it in the Google Cloud Console.
cloud.google.com %100 güvenCloud CDN uses Google's global edge network to serve content closer to users.
cloud.google.com %100 güvenCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com %100 güvenCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Arşivlenmiş Kanıtlar
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of faqq-trezorr-start.typedream.app · checked Jun 26, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin