learn--trezorwallets[.]typedream[.]app
“Trezor Wallet”
证据摘要
This domain, learn--trezorwallets.typedream.app, is identified as a high-risk phishing resource designed to impersonate the official Trezor cryptocurrency wallet interface. Analysis indicates the site employs deceptive branding elements, including a page title labeled 'Trezor Wallet,' to mislead users into entering sensitive credentials such as recovery seeds, private keys, or wallet passwords. The objective of this campaign is financial theft, where attackers gain unauthorized access to victims' cryptocurrency holdings by harvesting authentication details through fraudulent input forms. Infrastructure analysis reveals the domain resolves to the IP address 188.114.96.3 and is hosted through Typedream, a platform allowing rapid deployment of web pages. Detection metrics confirm the site's malicious nature, with 10 out of 95 security vendors on VirusTotal flagging it as malicious. Additionally, the domain appears on three independent security blocklists and is actively blocked by cryptocurrency security tools and browser extensions. The SSL certificate, issued by Google Trust Services, does not mitigate the threat, as phishing sites frequently abuse legitimate certificates to appear credible. Technologies detected include Node.js, React, Next.js, and Google Cloud infrastructure, suggesting the use of modern web frameworks to enhance the site's deceptive appearance. Users who visited learn--trezorwallets.typedream.app should assume their credentials or recovery phrases have been compromised. Immediate action is required: revoke access to any connected wallets, transfer remaining funds to a new, secure wallet address, and monitor all linked accounts for unauthorized transactions. Enable multi-factor authentication where available and report the incident to relevant security teams or abuse contact points. Avoid reusing passwords or recovery phrases across platforms, and verify all future interactions with cryptocurrency services through official channels only. The domain has been taken offline, but similar campaigns may emerge using comparable infrastructure or branding tactics.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月13日
检测时间线
-
VirusTotal
7 → 10
技术
识别出 11 项高置信度技术
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of learn--trezorwallets.typedream.app · checked Jun 25, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控