This domain, trustenergy.app, was registered on July 27 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com and is currently resolved to the Cloudflare‑hosted address 104.21.36.18. The authoritative name servers arya.ns.cloudflare.com and weston.ns.cloudflare.com indicate that the infrastructure is operated behind Cloudflare’s reverse‑proxy network. The domain is classified as a generic phishing site and is listed as high‑risk with an active status as of the report date, July 31 2026. Detection data show that seven of ninety‑one antivirus and URL‑reputation engines on VirusTotal have flagged the domain, and it appears on a single external security blocklist.
The PhishDestroy community blocklist has already taken the domain down in its feed. No additional public blocklists, Safe Browsing entries, or Open Threat Exchange (OTX) reports are currently associated with the domain. No SSL certificate details, HTTP response codes, or page‑title information have been published, so the visual or functional characteristics of the site remain unknown. Likewise, no brand‑target or specific phishing kit identifiers have been disclosed.
The limited evidence suggests that the domain is being used to harvest credentials, but the exact victim‑facing content cannot be confirmed without direct analysis. Defenders should immediately add 104.21.36.18 and trustenergy.app to network‑level deny lists, enforce DNS filtering against the known blocklist entry, and monitor Cloudflare‑associated IP ranges for related activity. Continuous re‑scanning on multi‑engine platforms is advised to capture any changes in detection scores, and any newly observed page‑title or SSL fingerprint should be incorporated into detection rules. Until further forensic evidence is obtained, the domain should be treated as malicious and blocked at perimeter and endpoint layers.