j[.]gettrustpayment[.]live
“Trust Wallet”
PhishDestroy has flagged j.gettrustpayment.live with an active crypto drainer campaign. This domain resolves to IP 185.246.190.216 and leverages a Let's Encrypt SSL certificate for deception. The threat involves stealing cryptocurrency wallet credentials or funds via fake payment or login interfaces designed to mimic legitimate services. Users should avoid interacting with this domain entirely.
VirusTotal analysis shows 0 detections out of 95 scanning engines, indicating this domain is not yet widely blacklisted. The domain is registered via Let's Encrypt, which does not validate domain legitimacy beyond basic domain control. The IP address (185.246.190.216) is associated with multiple low-trust hosting providers, common in malicious campaigns. Creation and registration details are still under verification, but the absence of detections and use of a free SSL certificate suggest early-stage deployment. This increases the risk of successful deception before broader detection.
To mitigate risk, users must verify any payment or login link by manually typing the official URL or using bookmarks. Crypto users should never enter seed phrases or private keys into web forms. Install and use browser extensions like PhishDestroy to automatically block known malicious domains. Report suspicious domains to PhishDestroy for rapid takedown. Always enable multi-factor authentication on wallets and never rely solely on links received via email or social media. Trust must be verified through official channels only.
제출된 증거 스냅샷
- 전송됨
- 원장 기록
- 1
- 사건 ID
PD-20260404-1D3E1D- 캡처된 페이지 제목
- Trust Wallet
- PDF 자료
- PDF 증거
법적 근거
증거 전문
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
네트워크 보안 인텔리전스
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | j.gettrustpayment.live/scripts/main.js |
malware | Detects file containing Telegram Bot API |
위협 대응 Pipeline
차단 목록 범위
모니터링 중인 외부 피드 10개 · 저장된 스냅샷 2026년 8월 10일
VirusTotal 분석
사이트 성능 분석
Google PageSpeed Insights — mobile performance audit of j.gettrustpayment.live · checked Apr 4, 2026
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.
모든 도메인 확인
저장된 차단 목록, WHOIS, DNS 및 공개 스캔 증거를 사용한 위협 분석
지금 스캔하기피싱 신고
의심스러운 도메인을 당사의 위협 데이터베이스에 신고해 주세요 — 커뮤니티를 보호해 주세요
보고서실시간 위협 정보
최근 피싱 보고서 및 관찰된 가용성 변경 사항
모니터링