MALICIOUS — CRITICAL
فحص التصيد والأمان للنطاق f.gettrustpayment.live
f[.]
PhishDestroy identifies f.gettrustpayment.live as an active crypto drainer posing as a payment portal.
- VirusTotal
- 17/94
- Blocklists
- 1 · ScamSniffer
- التوفر
- المحتوى غير متوفر · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
f.gettrustpayment.live — المحتوى غير متوفر (HTTP 502). انتحال العلامة التجارية: Trust Wallet; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 17/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, Emsisoft); URLQuery 1 alert; URLScan malicious verdict; Spamhaus DBL_PHISH; 1 external blocklist match (ScamSniffer); PhishDestroy score 95/100.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
PhishDestroy identifies f.gettrustpayment.live as an active crypto drainer posing as a payment portal. The site mimics legitimate trust-payment services to trick users into approving malicious cryptocurrency transactions that drain wallet funds without consent. Visitors risk losing entire digital asset balances if wallet connections or credential submissions are authorized. This domain is under active investigation due to confirmed malicious intent, though antivirus engines have not yet flagged it.
This domain was flagged by PhishDestroy security teams and resolves to IP address 185.246.190.216, hosted on infrastructure associated with fraudulent cryptocurrency schemes. The site uses a Let’s Encrypt SSL certificate to appear legitimate, but the domain was registered recently and currently maintains 0 detections across 95 VirusTotal engines as of tracking seed ac3373. The lack of detections does not indicate safety—many crypto drainers evade detection until reports escalate post-victimization.
If you visited f.gettrustpayment.live, disconnect any connected wallets immediately through your wallet app’s connection manager. Revoke any unauthorized permissions via blockchain explorers like Etherscan or via wallet settings. Do not enter seed phrases, private keys, or sign any transactions from this domain. Report the URL to your antivirus provider, wallet platform, and local cybercrime units. Monitor wallets for unauthorized transfers using block explorers. Use hardware wallets or isolated browser profiles for crypto activities and avoid clicking links from unsolicited messages.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
نطاق تغطية البيانات12 recorded checks
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | f.gettrustpayment.live/scripts/main.js |
malware | Detects file containing Telegram Bot API |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of f.gettrustpayment.live · checked Apr 4, 2026
الأدلة والتقارير الخارجيةIndependent lookups and source reports
PD-20260404-8557AA Recipient: abuse@flokinet.is Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.