# trutwaltextn.gitbook.io — MALICIOUS > Stay alert: trutwaltextn.gitbook.io is flagged for phishing. Avoid sharing credentials or personal info on this active domain. ## Summary PhishDestroy has identified trutwaltextn.gitbook.io as an active phishing domain posing a medium level of risk. This threat aims to deceive users into divulging sensitive information, which can lead to identity theft or financial loss. The domain's persistence highlights the ongoing risk to unsuspecting internet users. The domain trutwaltextn.gitbook.io was registered on March 30, 2014, and is hosted via Cloudflare, Inc., resolving to the IP address 172.64.147.209. VirusTotal analysis shows that 4 out of 95 security vendors have flagged this domain, indicating a credible threat but moderate detection coverage. The use of the GitBook platform suggests attackers are leveraging trusted hosting services to add legitimacy to their phishing attempts. Users should exercise caution by avoiding interaction with this domain, especially refraining from entering login credentials or personal data. It is recommended to verify URLs carefully, enable multi-factor authentication on sensitive accounts, and report suspicious domains to security teams. Staying informed and vigilant can prevent falling victim to these phishing tactics. ## Threat Details - Verdict: MALICIOUS - Site status: alive (HTTP 200) - Page title: GitBook ## Domain Intelligence - Registered: 2014-03-30 06:09:09 - Registrar: Cloudflare, Inc - IP: 172.64.147.209 - Nameservers: dahlia.ns.cloudflare.com hugh.ns.cloudflare.com ## Detection Status - VirusTotal: 6 vendors flagged Vendors: ["ADMINUSLabs", "alphaMountain.ai", "Fortinet", "Webroot"] - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Screenshot: https://i.ibb.co/hFTWVTcR/e496326b423d.png - Cloudflare Radar: https://radar.cloudflare.com/scan/f02ba1e7-12d4-4b46-bcb3-d5abcdcc78a0 - PhishDestroy: https://phishdestroy.io/domain/trutwaltextn.gitbook.io/ - LLM endpoint: https://phishdestroy.io/domain/trutwaltextn.gitbook.io/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/trutwaltextn.gitbook.io/ Last updated: 2026-03-19