# trustwallet.transaction.cfd — SUSPICIOUS > Domain trustwallet.transaction.cfd is a brand impersonation site targeting Trust Wallet users, flagged by 1 of 95 VirusTotal vendors. ## Summary The domain trustwallet.transaction.cfd has been identified as an active brand impersonation threat, specifically mimicking Trust Wallet to deceive users. This domain is currently flagged with an elevated risk status and is actively engaged in malicious activities. This domain was flagged by 1 of 95 VirusTotal vendors, registered through Global Domain Group LLC, and resolves to IP 64.188.79.72. The SSL certificate was issued by Let's Encrypt, and the domain was created on February 02, 2026. The low VirusTotal detection rate suggests evasion tactics, while the recent registration indicates opportunistic malfeasance. Given the active status and low detection rate, immediate action is required. Analysts should block this domain at the network level and update firewall rules to prevent access. Users should be warned against interacting with this domain, and Trust Wallet should be notified to investigate further impersonation attempts. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) - Target brand: Trust Wallet ## Domain Intelligence - Registered: 2026-02-02 01:33:51 - Registrar: Global Domain Group LLC - IP: 64.188.79.72 ## Detection Status - VirusTotal: 1 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/db697169-1b2f-45e9-a9a3-8eda6a5687a5 - PhishDestroy: https://phishdestroy.io/domain/trustwallet.transaction.cfd/ - LLM endpoint: https://phishdestroy.io/domain/trustwallet.transaction.cfd/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/trustwallet.transaction.cfd/ Last updated: 2026-03-21