# trustcard-tw.digital — SUSPICIOUS > trustcard-tw.digital hosts a fake financial service phishing site with SSL. Flagged by 0 of 95 VirusTotal vendors. Check the full report. ## Summary trustcard-tw.digital is a currently active domain hosting a fake financial service phishing campaign. This domain impersonates Trustcard, a legitimate prepaid card service, to deceive users into submitting sensitive payment card details. The campaign is presently under active investigation as part of a broader wave targeting financial institutions in the Asia-Pacific region. PhishDestroy’s threat analysis confirms this is not a generic phishing attempt but a focused credential harvesting and payment fraud operation. Users interacting with this domain risk direct financial loss and potential identity theft through exposed payment instruments. This domain was flagged by 0 of 95 VirusTotal vendors as of the latest scan, indicating it remains undetected by most antivirus engines. trustcard-tw.digital is registered through PDR Ltd. d/b/a PublicDomainRegistry.com and resolves to IP address 172.67.217.190. The domain was created on March 20, 2026, and is secured using a Let’s Encrypt SSL certificate, which increases user trust despite malicious intent. It currently sits at a low trust score due to lack of historical reputation and absence from major threat intelligence blocklists, underscoring its novelty and potential for rapid expansion. Current status remains active, with PhishDestroy continuing to monitor propagation via web crawlers, DNS sinkholes, and underground forums. Immediate action is recommended: users should avoid accessing trustcard-tw.digital and report any encounters to their security team or fraud hotline. Organizations are advised to block the domain and IP at DNS/firewall levels and inspect internal logs for inbound or outbound connections. Sharing IOCs (domain, IP, SSL thumbprint) within threat-sharing platforms enhances collective defense. Proactive user awareness training on financial phishing tactics is strongly encouraged to reduce exposure to this and similar campaigns. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-03-20 04:10:27 - Registrar: PDR Ltd. d/b/a PublicDomainRegistry.com - IP: 172.67.217.190 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/73fd7379-a9d8-4a2c-b541-c89baec0efde - PhishDestroy: https://phishdestroy.io/domain/trustcard-tw.digital/ - LLM endpoint: https://phishdestroy.io/domain/trustcard-tw.digital/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/trustcard-tw.digital/ Last updated: 2026-03-22