MALICIOUS — CRITICAL
c[.]gettrustpayment[.]live
PhishDestroy identifies c.gettrustpayment.live as an active crypto drainer domain posing under the guise of a legitimate payment trust portal.
- VirusTotal
- 16/94
- Blocklists
- 1 · ScamSniffer
- Ketersediaan
- Konten tidak tersedia · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
c.gettrustpayment.live — Konten tidak tersedia (HTTP 502). Peniruan identitas merek: Trust Wallet; Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 16/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, Emsisoft); URLQuery 1 alert; URLScan malicious verdict; Spamhaus DBL_PHISH; 1 external blocklist match (ScamSniffer); PhishDestroy score 95/100.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
c.gettrustpayment.live Crypto Drainer Fake Payment Portal Alert
c.gettrustpayment.live is a crypto drainer impersonating trust payment services. VirusTotal shows 0/95 detections. Block immediately and avoid visiting.
PhishDestroy identifies c.gettrustpayment.live as an active crypto drainer domain posing under the guise of a legitimate payment trust portal. This domain resolves to IP 185.246.190.216 and leverages a Let's Encrypt SSL certificate to appear credible. The site is designed to trick users into connecting crypto wallets under the false pretense of secure payment processing, enabling unauthorized fund transfers once wallet permissions are granted. This domain was flagged with a VirusTotal detection rate of 16/95 engines at the time of analysis, indicating it remains undetected by most antivirus solutions despite its malicious intent. The domain is hosted on a bulletproof hosting provider and uses dynamic DNS through Let's Encrypt for rapid rotation and evasion. With no current blocklist presence and minimal detection, it represents a high-risk threat to users engaging in cryptocurrency transactions. Users who visited c.gettrustpayment.live should immediately disconnect any connected crypto wallets, revoke any granted permissions via blockchain explorers, and scan devices with updated antivirus software. Report the domain to your browser’s safe browsing program and avoid interacting with any payment-related prompts on this site. Consider rotating wallet addresses and private keys if funds were exposed. Proactive monitoring for unauthorized transactions is strongly advised.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Cakupan data12 recorded checks
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | c.gettrustpayment.live/scripts/main.js |
malware | Detects file containing Telegram Bot API |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of c.gettrustpayment.live · checked Apr 4, 2026
Bukti & Laporan EksternalIndependent lookups and source reports
PD-20260404-C0D5FC Recipient: abuse@flokinet.is Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.