trust25[.]top
“REWARD Portal v2 --- Latest Web3 Wallets”
Riepilogo delle prove
trust25.top was registered on October 07, 2025 through NiceNIC International Group Co., Limited. The domain resolves to IP 209.94.90.1, an address owned by AS40680 (Protocol Labs) located in the United States. DNS resolution is provided by Cloudflare nameservers coen.ns.cloudflare.com and tia.ns.cloudflare.com. No TLS certificate is presented, indicating the site is served over plain HTTP. The page title retrieved from the live capture reads “REWARD Portal v2 --- Latest Web3 Wallets”, and the site is explicitly listed as impersonating the Trust Wallet brand.
The observed scam type is classified as Wallet/Seed Phishing, targeting users’ private keys or seed phrases. Automated reputation scoring from Gridinsoft assigns a trust score of 0 out of 100, reflecting extreme malicious confidence. VirusTotal analysis shows that three of ninety‑five security vendors flagged the domain, and the domain appears on one external blocklist. The site has been blocked by the PhishDestroy service and, as of the report date, is taken offline.
Evidence suggests the infrastructure was purpose‑built for credential harvesting rather than a broader payload distribution. Uncertainty remains regarding the exact phishing kit used and whether additional C2 hosts share the same IP range. Defenders should continue to block the domain and its IP, monitor for future registrations that reuse the same nameserver set or ASN, and update endpoint protection rules to flag any HTTP requests to the listed page title. Threat‑intel feeds should retain the indicator for correlation with emerging wallet‑related scams.
Data Coverage
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 11/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Prove dell’esito memorizzate
Esito e attribuzione della rimozione
- Esito
dns_inactive- Causa
dns_nxdomain- Attendibilità
- 80%
- Prima osservazione
- Ultima osservazione
Indisponibilità stimata
Tempo fino all’indisponibilità: 0 hSHA-256 della prova d0b7046e8c2f
Cronologia del rilevamento
-
Cloudflare Radar
Scansione Cloudflare Radar archiviata · Apri scansione
-
Disponibilità
Primo valore archiviato: DNS inattivo
f93a11f87e4d -
Disponibilità
DNS inattivo → Sconosciuto
6fb757d2f1a9 -
Disponibilità
Sconosciuto → Inattivo
5944ce4969cb -
Disponibilità
Inattivo → DNS inattivo
dcbffd905cc3 -
Disponibilità
DNS inattivo → Sconosciuto
0878ee7c2459 -
Disponibilità
Sconosciuto → DNS inattivo
6dfe9145995c -
Disponibilità
DNS inattivo → Sconosciuto
722fe07d51d4 -
Disponibilità
Sconosciuto → DNS inattivo
d0b7046e8c2f
Segnalazioni della comunità
Segnalato da 1 membro della comunità; prima osservazione il 08/10/2025
- Segnalazioni memorizzate
- 1
- URL segnalati univoci
- 1
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, nomi TLS e date
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisi di VirusTotal
Domini simili
104 domini simili memorizzati
Mostra tutto (88)
Visualizzati 100 di 104
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo