app.trustrawallet.com
“TrustraWallet”
www.app.trustrawallet.com is identified as a crypto drainer with 5 of 95 VirusTotal vendors flagging it and listed on one security blocklist, indicating.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
Résumé des preuves
The domain www.app.trustrawallet.com has been identified as a crypto drainer, associated with activities aimed at extracting cryptocurrency from unsuspecting users. There is no specific brand associated with this domain, but its malicious infrastructure indicates it is part of a broader scheme targeting digital wallet users. The domain's online presence raises significant concerns regarding user security and trust.
Technical indicators for www.app.trustrawallet.com reveal a VirusTotal (VT) score of 4 out of 95, meaning that while not all security vendors flag it, a notable minority does recognize the potential threat. The domain was created on March 22, 2026, and is registered through TuringSign Inc., operating under the name Cosmotown. The domain resolves to the IP address 198.251.89.168, and it is currently blocked by one security blocklist, showing its recognition as a threat. According to information from Google Safe Browsing (GSB), the domain is listed, which contributes to its elevated risk assessment.
Currently, the status of www.app.trustrawallet.com is offline, likely due to proactive response actions taken by security entities. However, it is essential to maintain vigilance since the domain may reappear or be relaunched through different infrastructure. The existing risk remains elevated as the potential for future operations targeting cryptocurrency holders exists. Users and network administrators are advised to block this domain and remain cautious of any communications or links associated with it to prevent possible financial loss.
Forensic History & Detection Timeline
-
VirusTotal Detections Update Jul 1, 2026 · 04:55 UTCVirusTotal scanner detections updated from 1 to 4. Added scanner alerts: ChainPatrol, Fortinet, alphaMountain.ai.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Evasion analysis
Cloaking suspected: scanner and victim titles differ
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not observed
- Score de dissimulation
- 0/6
- Last cloaking scan
- Server header seen by scanner
LiteSpeed
Scanner note: redirect: raw=redirect_302; http=302; via=https_proxy; location=https://www.app.trustrawallet.com/login; server=LiteSpeed
Technologies · 6 identified
Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif