dydxtrade--vissit[.]typedream[.]app
“404: This page could not be found.”
dydxtrade--vissit.typedream.app — 内容不可用. 品牌冒充:dYdX; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 11/95 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, CyRadar); CF Radar malicious; PhishDestroy score 83/100. 注册商: Typedream.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of the domain dydxtrade--vissit.typedream.app confirms its classification as a crypto scam impersonating the decentralized exchange dYdX. As of July 24, 2026, the domain resolves to the IP address 188.114.96.3, hosted on Cloudflare's infrastructure (AS13335) in the United States. The domain was registered through Typedream, a platform that provides website hosting services, and is currently offline with an HTTP 404 status, indicating the page could not be found. Despite its offline status, the domain remains flagged by 11 of 95 security vendors on VirusTotal, reflecting elevated detection rates consistent with phishing or scam activity. Additionally, the domain appears on one security blocklist, further corroborating its malicious classification.
Infrastructure analysis reveals the use of modern web technologies, including Node.js, React, Next.js, and Webpack, alongside Google Cloud services such as Google Cloud Trace and Google Cloud CDN. The SSL certificate is issued by Google Trust Services (WE1), a common certificate authority for both legitimate and malicious sites. The absence of nameserver details and the domain's reliance on Cloudflare suggest efforts to obfuscate hosting details, a tactic frequently observed in phishing campaigns. The page title, '404: This page could not be found,' provides no direct evidence of the site's content but aligns with the domain's current offline status. Defenders should treat this domain as a confirmed threat targeting users of the dYdX platform.
The combination of brand impersonation, detection by multiple security vendors, and its presence on a security blocklist justifies its elevated risk classification. Network-level blocking of the domain and its associated IP (188.114.96.3) is recommended to mitigate potential exposure. Organizations should also monitor for related domains registered through Typedream or leveraging similar infrastructure, as these may indicate ongoing or evolving campaigns.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
所用技术 · 9 identified
JavaScript runtime built on Chrome V8 engine for server-side development.
JavaScript library for building user interfaces with component-based architecture.
Suite of cloud computing services running on Google infrastructure.
React framework for production with hybrid static and server rendering.
Content delivery network built on Google global edge infrastructure.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comModule bundler for modern JavaScript applications.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。