trustcard[.]click
“Trust | Your Private Crypto Card”
証拠の概要
This domain is flagged for elevated-risk brand impersonation targeting Trust Wallet, a cryptocurrency wallet service. Analysis indicates the infrastructure is designed to deceive users into interacting with fraudulent crypto management interfaces, likely functioning as a crypto drainer to siphon digital assets from victims' wallets. The page title, 'Trust | Your Private Crypto Card,' directly mimics Trust Wallet's branding to exploit user trust and familiarity. Infrastructure analysis reveals the domain trustcard.click was registered on February 21, 2026, through Tucows Domains Inc., an unusually future-dated creation that may indicate an attempt to evade detection or establish perceived legitimacy. The domain resolves to IP address 157.22.240.103, hosted on AS215540 (GLOBAL CONNECTIVITY SOLUTIONS LLP) in Albania, a network with limited historical association with legitimate financial services. No SSL certificate was detected, increasing the risk of unencrypted credential or transaction data interception. Security vendor detections on VirusTotal report 12 out of 95 engines flagging the domain as malicious, while it appears on one active security blocklist and is specifically blocked by PhishDestroy. Mitigation steps for this threat type include immediate domain takedown requests to the registrar and hosting provider, citing the fraudulent use of Trust Wallet's intellectual property. Network defenders should update blocklists to include the domain, IP address, and associated ASN to prevent resolution within protected environments. End users should be alerted via security bulletins to verify wallet interfaces exclusively through official Trust Wallet channels, particularly avoiding domains with future-dated registration timestamps or those lacking SSL encryption. Cryptocurrency platforms are advised to monitor for unauthorized transaction attempts originating from this infrastructure and implement additional authentication layers for high-value transfers.
送信済み証拠のスナップショット
- 送信日時
- 台帳レコード
- 1
- ケース ID
PD-20260219-16FA45- PDF 資料
- 証拠 PDF
証拠全文
Acceptable Use Policy (AUP): The domain trustcard.click is engaged in phishing activities, which is a direct violation of your AUP that prohibits illegal activities, fraud, and deception.
Terms of Service (TOS): The ongoing use of this domain for fraudulent purposes constitutes a breach of your TOS, which reserves the right to suspend or terminate services for violations of policy.
Applicable Laws (KN):
Computer Misuse Act, 2013: This law criminalizes unauthorized access to computer systems, including phishing schemes that deceive users into providing sensitive information.
Electronic Transactions Act, 2011: This legislation includes provisions against fraudulent electronic communications, directly applicable to phishing activities.
Regulatory Note: Failure to act on this report may expose your organization to legal liability and regulatory scrutiny under applicable laws. Immediate action is recommended to mitigate potential risks.
Data Coverage
ネットワークセキュリティインテリジェンス
脅威対応 Pipeline
ブロックリストの確認範囲
監視対象の外部情報源 10 件 · 保存スナップショット 2026年8月11日
検出タイムライン
-
Cloudflare Radar
Cloudflare Radar スキャンを保存 · スキャンを開く
-
VirusTotal
12 → 15
-
VirusTotal
15 → 19
保存済みキャプチャ
ドメイン・インテリジェンス
技術詳細DNS、TLS 名、タイムスタンプ
ICANN OVERSIGHT
認定と RAA の背景
認定と RAA の背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotalによる分析
サイトパフォーマンス分析
Google PageSpeed Insights — mobile performance audit of trustcard.click · checked Mar 2, 2026
このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください