twcards[.]org
“Access Restricted - VPN Detected”
संग्रहीत पहचान
क्लोकिंग चेतावनी
- क्लोकिंग प्रकार
content_divergence- क्लोकिंग स्कोर
- 3/6
साक्ष्य सारांश
PhishDestroy identifies twcards.org as a newly active fake-login page designed to steal cryptocurrency wallet credentials and drain digital assets. The site mimics a legitimate login portal to trick visitors into entering their seed phrases or private keys, which threat actors immediately harvest to empty wallets. Because wallets are irreversible, a single entry can result in total loss of funds without any recovery options. Users should treat this domain as hostile and avoid all interaction.
This domain was flagged on March 19, 2026, the same day it was registered through PDR Ltd. d/b/a PublicDomainRegistry.com. VirusTotal currently shows 0 detections out of 95 engines, indicating a newly emerged threat that has not yet propagated through antivirus databases. The site is served over HTTPS using a Let’s Encrypt certificate and resolves to IP 104.21.61.4, a hosting infrastructure linked to multiple recent cryptocurrency scams. The combination of fresh registration, low detection rate, and crypto-specific targeting suggests a high-risk drainer campaign in early deployment.
If you visited twcards.org, do not enter any credentials or cryptocurrency wallet information. Disconnect from the internet, run a full antivirus scan, and inspect your browser’s saved passwords and extensions for unauthorized changes. If you entered a wallet seed phrase or private key, move all remaining funds to a newly generated wallet immediately and revoke any connected smart-contract approvals via blockchain explorers. Report the domain to PhishDestroy for community protection and avoid clicking similar links in the future.
भेजे गए प्रमाण का स्नैपशॉट
- भेजा गया
- लेज़र रिकॉर्ड
- 1
- केस आईडी
PD-20260413-DED8AE- कैप्चर किए गए पेज का शीर्षक
- Trust Wallet - Crypto Card
- PDF दस्तावेज़
- PDF प्रमाण
कानूनी आधार
प्रमाण का पूरा पाठ
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Nextron YARA rules | twcards.org/assets/code.js |
malware | Unique code from Jetriz, Swid & Jeniva of the Tetris framework |
| Nextron YARA rules | twcards.org/assets/index-bakr55ut.js |
malware | Unique code from Jetriz, Swid & Jeniva of the Tetris framework |
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of twcards.org · checked Apr 13, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।