sendusdt[.]app
sendusdt.app — Contenu indisponible (HTTP 502). Usurpation de l'identité de la marque : Trust Wallet; Type d'arnaque : Wallet/seed Phishing. Résumé des preuves: VirusTotal 1/95 (Fortinet); PhishDestroy score 55/100. Bureau d’enregistrement: Tucows.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain www.sendusdt.app was registered through Tucows Domains Inc. on February 21, 2026 and is presently taken offline. DNS resolution points to the address 80.78.27.86, which maps to an autonomous system AS39287 (Materialism s.r.l.) located in Denmark. The authoritative name servers are 1-you.njalla.no, 2-can.njalla.in and 3-get.njalla.fo, indicating the use of the njalla hosting service. An HTTPS endpoint is present, secured by a Let’s Encrypt certificate issued under the R13 profile, and the server advertises modern transport and security features including Envoy, HSTS, Cloudflare and HTTP/3.
The only visible page title returned by the server is “Just a moment…”, a generic placeholder that does not reveal functional content. A Gridinsoft trust score of 0 / 100 was recorded, reflecting a lack of credibility. VirusTotal analysis shows that 1 of 95 scanners flagged the domain, and the site is listed on a single security blocklist. PhishDestroy has also blocked the domain.
The site explicitly impersonates Trust Wallet and is classified as a wallet/seed phishing campaign, targeting users of the cryptocurrency wallet to harvest private keys or recovery phrases. Although the site is no longer reachable, the underlying infrastructure—particularly the IP address, the njalla name servers, and the Let’s Encrypt certificate—remains observable and could be reused in future malicious deployments. Defenders should add www.sendusdt.app and 80.78.27.86 to network and email filtering rules, monitor for re‑registration of the domain or related subdomains, and watch for any new activity originating from the same name server set or ASN. Continuous threat‑intel feeds should be consulted for any reappearance of the domain or similar Trust Wallet impersonation attempts, and incident response teams should be prepared to educate users about unsolicited requests for wallet seeds or private keys.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies · 4 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analyse VirusTotal
Preuves archivées
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of sendusdt.app · checked Mar 2, 2026
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif