helphome-trezer-wallt[.]typedream[.]app
“Trezor® Wallet® | Starting Up Your Device | Trézór® | Trézór®”
helphome-trezer-wallt.typedream.app — Контент недоступний. Уособлення бренду: Trezor; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 15/91 (ChainPatrol, alphaMountain.ai, CyRadar, Emsisoft, Fortinet); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 95/100. Реєстратор: Typedream.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
helphome-trezer-wallt.typedream.app is an active phishing domain impersonating Trezor, a well-known cryptocurrency hardware wallet brand. The domain is flagged as malicious by 6 out of 95 vendors on VirusTotal, indicating a significant threat presence. It is listed on three public blocklists, including those maintained by PhishDestroy, MetaMask, and SEAL.
The domain is hosted on an IP address registered in the United States under Cloudflare, Inc., which is a common choice for threat actors due to its robust infrastructure. The SSL certificate is issued by Google Trust Services, which might lend an air of legitimacy to unsuspecting users. The phishing page aims to deceive users into thinking they are interacting with a legitimate Trezor service, potentially leading to credential theft or unauthorized access to cryptocurrency assets.
PhishDestroy identified this domain on June 18, 2026, and it carries a high platform risk score of 85 out of 100. The use of a reputable registrar like Typedream and a trusted SSL issuer highlights the sophisticated tactics employed by the attackers to avoid early detection. The domain's active status and the impersonation of a trusted brand underscore the importance of timely threat intelligence to mitigate the risks associated with such phishing campaigns.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 9 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org 100% впевненостіReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% впевненостіNext.js is a React framework for developing single page Javascript applications.
nextjs.org 100% впевненостіGoogle Cloud Trace is a distributed tracing system that collects latency data from applications and displays it in the Google Cloud Console.
cloud.google.com 100% впевненостіCloud CDN uses Google's global edge network to serve content closer to users.
cloud.google.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Аналіз конфігурації сайту
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога