الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 14. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
REGISTRAR NEGLIGENCE · EGREGIOUS TLD Registry (.at) was notified 5 months ago — the threat is still operational.
Why this matters — ICANN RAA §3.18 obligation & victim-assistance

On PhishDestroy delivered an evidence-backed abuse report (repeated 3 times, most recently ) to abuse@nic.at with the evidence stored for the case at that time. More than 5 months later, the phishing infrastructure remains reachable .

Under ICANN RAA §3.18 accredited registrars are contractually obliged to “take reasonable and prompt steps to investigate and respond appropriately to any reports of abuse.” Silence beyond 24 hours after a documented notification with verifiable evidence is not a timing issue — it is a policy decision to let the operation continue. PhishDestroy\'s position: where a registrar fails to act on clear evidence, the registrar has aligned itself with the operator of the scheme and bears co-responsibility for downstream harm caused to victims from the moment of notification onward.

Victim-assistance obligation. If TLD Registry (.at) doesn't consider the listed detections enough proof — that is interesting in itself, given the volume of independent vendor confirmations. But after 3 separate notifications over 5 months, with the operation still active, the registrar took no measurable action to mitigate the harm caused by their client. The reasonable next step is direct help to any identified victims — contact & payment-trail disclosure, abuse-thread transcripts, registrant data preservation — since the registrar chose, by inaction, to extend the window of damage.

Elapsed since first report
5 months
Reports sent
3
Latest case ID
PD-1772675106-trustwin.at
Current status
Serving traffic (alive)
أمن المجال وذكاء التهديدات

trustwin[.]at

فحص التصيد والأمان للنطاق trustwin.at

“Trustwin: Donald Trump’s Leading Blockchain Crypto Casino”

حكم التهديد حرجة 100/100 درجة الأدلة
التوفر آخر نشاط معروف أحدث مراقبة إمكانية الوصول المخزنة
إشارات الخطر
اكتشافات VirusTotal: 14/91 Spamhaus DBL: DBL_PHISH انتحال العلامة التجارية: Trust Wallet آخر نشاط معروف
14/91 VT URLQuery: 100 detections OTX: 3 refs 25/12/2025 Trust Wallet احتيال على المقامرين Crypto Scam 3 Reports Sent CDN
ملخص التقرير

trustwin.at: أظهرت نتيجة VirusTotal أن 14 من أصل 91 محركًا رصد هذا النطاق. راجع DNS وSSL وجهة التسجيل وقوائم الحظر.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
1121EE75
الدرجة
100/100
الوضع
Evidence v1

PhishDestroy first observed trustwin.at on Dec 25, 2025. Evidence score: 100/100 (a triage score, not a probability).

Threat signals: 14 of 91 VirusTotal engines flagged the domain on Jul 27, 2026 at 02:28 UTC. AlienVault OTX recorded 3 community pulse references on Mar 1, 2026 at 13:53 UTC. Spamhaus DBL: DBL_PHISH on Jul 14, 2026 at 14:33 UTC.

The latest probe reached the domain (HTTP 200) on Aug 7, 2026 at 02:31 UTC. Reachability alone does not establish whether the content is safe.

Other observations: No external blocklist matches were recorded in the snapshot from Aug 7, 2026 at 02:20 UTC. Google Safe Browsing recorded no flag on Mar 3, 2026 at 04:14 UTC. URLScan captured the domain on Feb 25, 2026 at 01:16 UTC. Negative or missing results do not establish safety.

Context: registrar TLD Registry (.at), IP address 104.21.18.14, apparent target Trust Wallet. Infrastructure details may have changed since collection.

This report summarizes time-bound observations, not a live guarantee. Avoid interacting with the domain; submit an appeal if the report is inaccurate.

VirusTotal
VirusTotal
14 det.
URLQuery
URLQuery
100 det.
OTX references
Gridinsoft
1/100
شهادة TLS
منتهية الصلاحية أو غير متحقق منها -78d
الحالة المرصودة
آخر نشاط معروف 200
PhishDestroy
قائمة الإتلاف
مُدرج
Reports Sent
3 ignored
نطاق تغطية البيانات VirusTotal 14 / 91 URLQuery 100 det. OTX 3 community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict malicious حجب عناوين DNS لم يتم التحقق منها TLS منتهية الصلاحية أو غير متحقق منها WHOIS not parsed لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها Gridinsoft 1/100
مؤشرات الأمان
GS Gridinsoft Analysis 1 / 100
Hosting SSL Certificate 18+ Cryptocurrency Registration Form Casino Famous people Cloudflare Browser Insights

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
19/20
Initial Abuse Report (#1)
Sent to 2 abuse contacts at TLD Registry (.at) with forensic evidence
abuse@nic.atcompliance@icann.org
05/03/2026
ICANN Escalation #2
Escalation #2 sent to 2 recipients including ICANN Compliance — follow-up record after a previous report
abuse@nic.atcompliance@icann.org
06/03/2026
ICANN Escalation #4
Escalation #4 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@nic.atcompliance@icann.org
12/07/2026
3 Reports Filed
3 report records were stored over 155 days; current observed status: آخر نشاط معروف

حالة قوائم الحظر العامة

لقطة محفوظة

معلومات النطاق

النطاق
URLScan Verdict ضار score 100 report ↗
الخادم / ASN cloudflare · AS13335 CLOUDFLARENET, US
IP Context Cloudflare shared edge origin IP hidden لا تُنسب سمعة Edge-IP إلى هذا المجال.
مسجّل النطاق TLD Registry (.at)
جهة الإبلاغ عن إساءة الاستخدامabuse@trustwin.at
البحث في قاعدة بيانات WHOISICANN RDAP لـ trustwin.at →
عنوان IP 104.21.18.14 CDN
الموقع الجغرافيUS San Francisco, US
الشبكةAS13335 · Cloudflare, Inc.
يتم إخفاء عنوان IP الأصلي خلف وكيل CDN. تحتوي نتائج IP العكسي لعنوان الحافة على مستأجرين غير مرتبطين؛ يتطلب العثور على المصدر نظام أسماء النطاقات السلبي أو بيانات شفافية الشهادة.
Elapsed Since First Report 67 days
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: آخر نشاط معروف.
Minimum notice count 3 is the number of stored outgoing report records for this domain. It does not by itself prove acknowledgement or action by a recipient.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
ICANN RAA §3.18 The history below lists stored escalation records and timestamps. It does not by itself establish receipt, acknowledgement, compliance, or enforcement by any recipient.
حالة HTTP200
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف25/12/2025
Submitted URLhttps://trustwin.at/?… query redacted
خوادم الأسماءbuck.ns.cloudflare.comisabel.ns.cloudflare.com
TLS Fingerprint
Favicon Hash
Case ID
عنوان الصفحة
Trustwin: Donald Trump’s Leading Blockchain Crypto Casino
شهادة TLS
منتهية الصلاحية أو غير متحقق منها · صادرة عن Google Trust Services / WE1
سجل بلاغات إساءة الاستخدام · 3 stored reports over 130 days · click to expand
This timeline is built from stored outgoing report records. It documents timestamps and listed recipients, but does not by itself prove delivery, acknowledgement, or recipient action.
3 abuse reports filed over 155 days — latest observed status: آخر نشاط معروف
The records name TLD Registry (.at) as a recipient or subject. ICANN Compliance appears in the recipient field for at least one record.
3
reports
155
days
ICANN CC
  1. Report #1 ICANN CC 583h still active Mar 5, 2026 · 01:45 UTC
    ESCALATION #2 (583h active): Phishing - trustwin[.]at
    abuse@nic.at compliance@icann.org
  2. Report #2 ICANN CC 616h still active Mar 6, 2026 · 11:15 UTC
    ESCALATION #3 (616h active): Phishing - trustwin[.]at
    abuse@nic.at compliance@icann.org
  3. Report #4 ICANN CC 3108h still active Jul 12, 2026 · 19:12 UTC
    ESCALATION #4 (3108h active): Phishing - trustwin[.]at
    abuse@nic.at compliance@icann.org
Record scope: the timeline documents outgoing records stored by PhishDestroy. Delivery, acknowledgement, and subsequent action require separate recipient or infrastructure evidence.
Casino / Gambling License Verification
Unverified gambling license
This domain markets casino/gambling services. Scam casinos routinely display fake Curaçao, MGA, or Kahnawake license badges that don’t exist in the real registries. Always verify the license number against the official regulator database before depositing. If the site shows a seal but no clickable registry link — or the linked registry page doesn’t exist — treat it as fraudulent.
Curaçao eGaming (official) Malta Gaming Authority UK Gambling Commission PA Gaming Control Kahnawake Gaming Gibraltar Gambling
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

14 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
ADMINUSLabs
alphaMountain.ai
BitDefender
Chong Lua Dao
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
كاسبرسكي
Lionic
سوفوس
VIPRE
Webroot

الأدلة المؤرشفة

Wayback Machine Snapshot
لقطة تاريخية متاحة لمراجعة الأدلة
View Archive
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of trustwin.at · checked Mar 2, 2026

62
Needs Work
Performance
FCP
1.21s
First Contentful Paint
LCP
21.13s
Largest Contentful Paint
CLS
0.005
Cumulative Layout Shift
TBT
503ms
Total Blocking Time
SI
1.9s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

أنت لست وحدك، ولا يوجد ما يدعو للخجل. المحتالون هم مجرمون ماهرون يستغلون ثقة الناس. ويُعد الإبلاغ عن تجربتك أقوى سلاح لمكافحة الاحتيال — فإبلاغك هذا يمكن أن يمنع وقوع ضحايا جدد ويساعد سلطات إنفاذ القانون على اتخاذ الإجراءات اللازمة. الصمت هو أكبر ميزة للمحتال. حطّمه.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

حول هذا التقرير: trustwin.at

يقدم هذا التقرير أحدث الأدلة المخزنة المتاحة لـ PhishDestroy. يتم عرض الطوابع الزمنية للمصدر حيثما كان ذلك متاحًا؛ يمكن أن تتغير أحكام التوفر والبائعين بعد التجميع.

عرض الموقع الذي تم التقاطه عنوان الصفحة “Trustwin: Donald Trump’s Leading Blockchain Crypto Casino” وربما ينتحل شخصية Trust Wallet.

اعتبارًا من 07/08/2026، كان لدى trustwin.at اكتشافات من محركات الأمان 14.

إذا كنت تعتقد أن هذه القائمة غير دقيقة، تقديم استئناف. للتعرف على منهجيتنا، قم بزيارة صفحة الأسئلة الشائعة.

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/trustwin.at"
  title="PhishDestroy threat report for trustwin.at"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>