help-auth-suites-trezuro[.]typedream[.]app
“Trézor Suite (Official) | Desktop & Web Crypto® Management”
help-auth-suites-trezuro.typedream.app — Контент недоступний. Уособлення бренду: Sui; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 17/91 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, Chong Lua Dao); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. Реєстратор: Typedream.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain is actively impersonating Sui, a well-known blockchain platform, to deceive users into disclosing sensitive credentials or transferring cryptocurrency assets. Brand impersonation of this nature typically involves fake login portals, fraudulent airdrop claims, or crypto drainer scripts designed to siphon funds from connected wallets. Users who interact with the site may unknowingly authorize malicious transactions or expose private keys, leading to immediate and irreversible financial loss. The site’s design and content closely mimic legitimate Sui authentication flows, increasing the likelihood of successful deception among unsuspecting victims. Analysis indicates the domain is registered through Typedream, a platform often exploited for rapid deployment of phishing infrastructure. It resolves to the IP address 188.114.96.3, hosted on Cloudflare’s network (AS13335), which is frequently used to obscure the true origin of malicious sites. The domain is flagged by 13 out of 95 security vendors on VirusTotal, a clear indicator of its malicious intent. Additionally, it appears on three independent security blocklists and is actively blocked by multiple wallet security providers. The SSL certificate, issued by Google Trust Services (WE1), does not mitigate the risk, as fraudulent sites commonly use valid certificates to appear legitimate. If a user has visited help-auth-suites-trezuro.typedream.app or interacted with its content, immediate action is required. First, disconnect any connected wallets from the site and revoke all suspicious permissions using a blockchain explorer or wallet management tool. Next, scan the device for malware using a reputable security solution to rule out secondary infections. Monitor all linked accounts, including cryptocurrency wallets and email, for unauthorized activity. Users should also report the domain to their wallet provider and relevant security teams to aid in broader mitigation efforts. Given the high-risk nature of this threat, affected individuals are advised to assume compromise and take proactive steps to secure their digital assets.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Аналіз конфігурації сайту
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога