trustwalletcard[.]it
“Trust Wallet Card — Secure Crypto Cards Powered by Trust Wallet”
trustwalletcard.it — Non vérifié. Usurpation de l'identité de la marque : Trust Wallet; Type d'arnaque : Brand Impersonation. Résumé des preuves: VirusTotal 1/91 (Fortinet); Spamhaus DBL_PHISH; PhishDestroy score 55/100. Bureau d’enregistrement: Register S.p.a.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain www.trustwalletcard.it was created on 10 June 2026 and registered through Register S.p.a. Authoritative name servers listed are ns1.register.it, ns2.register.it, ns1.vercel-dns-3.com, ns2.vercel-dns-3.com and ns3. The site resolves to IP address 66.33.60.130, which belongs to AS16509 Amazon.com, Inc. and is geolocated in the United States. An SSL certificate issued by Let’s Encrypt (YR1) is present, a common choice for short‑lived malicious infrastructure.
HTTP requests to the host return status code 451, indicating the content is unavailable for legal reasons; the current operational status is offline. VirusTotal analysis shows a single detection out of 91 security vendors, confirming at least one scanner flagged the domain. The page title observed is "Trust Wallet Card — Secure Crypto Cards Powered by Trust Wallet," aligning with the declared scam type of brand impersonation targeting the TrustWallet brand. The domain appears on one security blocklist and is listed as blocked by PhishDestroy.
No additional intelligence such as credential harvesting forms or malicious payloads has been captured, and the offline state limits further content inspection. Defensive recommendations include adding the domain and its resolved IP to network deny lists, monitoring the registrar and name server patterns for future registrations, and alerting endpoint protection solutions to the single VirusTotal detection. Continuous watch for re‑hosting attempts on other Amazon IP ranges is advised, as the infrastructure suggests a low‑cost, disposable hosting model typical of brand‑impersonation campaigns.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif