trustamlbot[.]net
“AML Check — Мониторинг криптотранзакций”
साक्ष्य सारांश
This domain, trustamlbot.net, is flagged as a brand impersonation threat targeting users of the Across protocol, a cross-chain bridging service. The site displays a page titled 'AML Check — Мониторинг криптотранзакций,' suggesting it masquerades as a cryptocurrency transaction monitoring tool. Analysis indicates the site likely aims to deceive users into disclosing sensitive information, such as wallet credentials or private keys, under the guise of compliance or security checks. The use of Russian in the page title further suggests targeting of non-English-speaking users, potentially expanding the attack surface beyond typical English-centric campaigns.
Technical indicators confirm the domain's malicious intent. trustamlbot.net was registered on September 27, 2025, through PDR Ltd. d/b/a PublicDomainRegistry.com, a registrar frequently associated with low-reputation domains. VirusTotal reports that 1 of 95 security vendors flags the domain as malicious, a low but non-negligible detection rate that aligns with emerging or evasive threats. The domain resolves to the IP address 84.32.84.10, which has been observed in prior phishing infrastructure. Additionally, the domain appears on one security blocklist and is actively blocked by at least one threat intelligence feed, reinforcing its classification as a confirmed impersonation threat.
Users who visited trustamlbot.net should take immediate action to mitigate potential risks. First, disconnect any wallets or accounts linked to the site and revoke permissions granted to unknown or suspicious applications. Monitor all connected accounts for unauthorized transactions or changes. If credentials or private keys were entered, assume they are compromised and transfer assets to a new, secure wallet. Report the incident to relevant platforms, such as the impersonated brand’s official security channels, to aid in broader threat mitigation efforts. Regularly update security tools and enable multi-factor authentication to reduce future exposure to similar threats.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 10/08/2026
पहचान समयरेखा
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
-
VirusTotal
3 → 1
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।