trustwalletinvests[.]org
“TrustWallet Invest - Your Trusted Investment Partner”
Résumé des preuves
Analysis of trustwalletinvests.org indicates a high‑confidence brand‑impersonation attempt targeting users of the Trust Wallet cryptocurrency wallet. The domain was registered on 21 February 2026 through Hostinger operations, UAB, and uses the generic parking nameservers ns1.dns-parking.com and ns2.dns-parking.com. DNS resolution points to the IPv4 address 92.113.23.46, which belongs to AS47583 Hostinger International Limited and is geolocated in Germany. No Transport Layer Security certificate is presented for the host, confirming that the site does not serve HTTPS content. The page title returned from the now‑offline site reads “TrustWallet Invest – Your Trusted Investment Partner,” which explicitly references the Trust Wallet brand and suggests an investment or financial service, consistent with the listed crypto‑scam classification.
The domain has been added to at least one security blocklist and was flagged by the PhishDestroy takedown service, confirming that active mitigation actions have been taken. VirusTotal scans show that seven of ninety‑three antivirus engines flagged the domain as malicious, providing additional independent corroboration of its illicit nature. The current HTTP status is offline, limiting real‑time interaction but preserving evidence of the malicious infrastructure. Uncertainty remains regarding the specific payload or phishing kit employed, as no detailed page content or capture of login forms has been publicly released.
The absence of an SSL certificate and the use of a generic parking provider suggest a low‑cost, disposable deployment rather than a sophisticated, persistent operation. Defenders should update their domain‑blocking feeds to include trustwalletinvests.org, monitor the associated IP address 92.113.23.46 for any future hosting changes, and consider adding the ASN AS47583 to watchlists for related activity.
Instantané des preuves transmises
- Envoyé
- Entrées du registre
- 1
- ID du dossier
PD-20260211-B12A6D- Titre de la page capturée
- TrustWallet Invest - Your Trusted Investment Partner
- Artefact PDF
- Preuve PDF
Fondement juridique
Texte intégral des preuves
Section 3.1 of the Acceptable Use Policy: The domain trustwalletinvests.org is engaged in phishing activities, attempting to deceive users into providing sensitive information under the guise of a legitimate service.
Section 4.2 of the Terms of Service: The use of this domain constitutes a violation of the terms regarding fraudulent and deceptive practices, warranting immediate action to suspend or terminate services.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. federal law prohibits unauthorized access to computers and networks, which is applicable as phishing schemes often involve unauthorized access to personal data.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud individuals through electronic communications, which is relevant given the fraudulent nature of the phishing activities associated with this domain.
Anti-Phishing Act: This legislation targets deceptive practices aimed at acquiring sensitive information, directly applicable to the operations of trustwalletinvests.org.
Regulatory Note: Failure to take appropriate action against this domain may expose your organization to legal liability and regulatory scrutiny. Immediate compliance is essential to mitigate potential risks.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 11/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif