trustwalletcard[.]cc
Resumen de las pruebas
trustwalletcard.cc was registered on 21 February 2026 through Global Domain Group LLC and immediately pointed to a Cloudflare‑owned address (188.114.97.3) belonging to AS13335. The domain has no TLS certificate, indicating that any data entered would be transmitted in clear text. The site is flagged as a wallet/seed phishing operation that impersonates Apple, and it has been taken offline and is currently listed on one security blocklist. PhishDestroy has recorded the domain as blocked, and a Gridinsoft trust score of 0 out of 100 reflects a complete lack of trust.
VirusTotal scans show that 14 of 93 AV engines flagged the domain as malicious, reinforcing the suspicion of malicious intent. The authoritative nameservers are newt.ns.cloudflare.com and ryleigh.ns.cloudflare.com, both standard Cloudflare resolvers. The combination of a recent registration date, use of a reputable CDN for fast DNS resolution, absence of HTTPS, and low trust scores suggests a deliberate infrastructure choice to host a short‑lived phishing campaign targeting Apple users who may be prompted to enter cryptocurrency wallet seeds. Because the site is already offline, any ongoing activity is likely halted, but the registration pattern and hosting details indicate that the operators may reuse the same infrastructure for future campaigns.
Defenders should add the domain and its IP address to internal blocklists, monitor for any new domains registered by the same registrar or using the same Cloudflare nameservers, and enforce strict verification of Apple‑related communications. Users should be warned that any unsolicited request for wallet seeds or Apple credentials is likely fraudulent, and they should be instructed to report such attempts to their security teams. Continuous observation of the associated IP range (188.114.97.0/24) and periodic re‑scans of the domain URL, should it reappear, are recommended to mitigate re‑use.
Instantánea de evidencia enviada
- Enviado
- Registros del libro
- 1
- ID del caso
PD-20260205-81D6EA- Artefacto PDF
- Evidencia en PDF
Fundamento jurídico
Texto completo de la evidencia
Acceptable Use Policy (AUP): The domain trustwalletcard.cc is engaged in phishing activities, which directly contravenes your AUP prohibiting illegal activities and deception.
Terms of Service (TOS): The use of this domain for fraudulent purposes constitutes a violation of your TOS, which reserves the right to suspend or terminate services for such infractions.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. federal law prohibits unauthorized access to computers and networks, which is applicable to phishing schemes.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud individuals or entities via electronic communications, including phishing.
Anti-Phishing Act of 2004: This act specifically addresses phishing and imposes penalties for those who engage in deceptive practices to obtain sensitive information.
Regulatory Note: Failure to take immediate action against this domain may expose your organization to liability and regulatory scrutiny. Compliance with your AUP and TOS is essential to mitigate risks associated with hosting or registering domains involved in illegal activities.
Data Coverage
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 13/08/2026
10 fuentes externas supervisadas Sin coincidencias
Cronología de detección
-
Cloudflare Radar
Análisis de Cloudflare Radar almacenado · Abrir análisis
Análisis de VirusTotal
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.