trusty[.]framer[.]ai
“Trust Wallet® Extension | Secure Browser Wallet for Web3 & Crypto”
Analysis of the domain trusty.framer.ai indicates an active generic phishing infrastructure. The domain is listed on three public security blocklists and is actively blocked by PhishDestroy, MetaMask, and SEAL, confirming its presence in multiple threat‑intelligence feeds. Registration data shows the domain was created through Framer B.V., but the authoritative nameserver records are unavailable (NS_NOT_FOUND), limiting visibility into DNS control changes. Network resolution points to a single IPv4 address, 31.43.161.6, which is the sole host associated with the domain in current DNS queries.
The IP address has not been publicly linked to other malicious campaigns, but its isolation suggests a dedicated staging point for phishing traffic. VirusTotal reports indicate the domain was scanned by 91 vendor engines without any detections at the time of analysis; however, the absence of alerts does not constitute a safety assurance, as automated signatures frequently lag behind novel phishing kits. No SSL certificate details, HTTP response codes, page titles, or content snapshots are available, leaving the web‑layer characteristics unverified.
Given the confirmed blocklist presence, the known IP resolution, and the lack of defensive evidence, security teams should treat trusty.framer.ai as high‑risk. Recommended actions include adding the domain and its resolved IP to outbound deny lists, monitoring DNS queries for recurring resolutions, and employing URL‑filtering solutions that reference the blocklists reporting the domain. Continuous re‑evaluation is advised, as future changes in hosting or content could alter the threat profile.
Threat Response Pipeline
Public Blocklist Status
Technologies · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com 100% confidenceReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% confidenceHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% confidenceHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% confidenceVirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of trusty.framer.ai · checked Aug 1, 2026
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive