Analysis of trustdigitalcard.org, registered on May 18, 2026, indicates active phishing infrastructure targeting digital card services. The domain remains operational as of July 31, 2026, and is flagged by one security blocklist, PhishDestroy. Infrastructure review shows the domain resolves to IP address 188.137.239.254, though no autonomous system or geolocation details were provided. Nameserver configuration includes a.share-dns.com, a5.share-dns.com, b.share-dns.net, and b5.share-dns.net, all associated with the registrar Gname.com Pte. Ltd. VirusTotal detection data reveals that one of 91 security vendors has classified this domain as malicious, though the specific detection context or signature is not detailed in available intelligence.
No additional detection sources, such as Safe Browsing or Open Threat Exchange, are referenced, limiting broader validation of its threat profile. The domain’s content has not been fully analyzed, and no page title, brand target, or phishing kit identifier is available in the provided data. Consequently, the exact nature of the phishing scheme—whether it mimics financial institutions, payment processors, or other digital card services—remains uncertain. Defenders should treat this domain as high-risk due to its active status, blocklist inclusion, and minimal but present detection by security vendors.
Network-level blocking of the domain and its resolving IP (188.137.239.254) is recommended for organizations handling digital payment or card-related data. Further investigation into the domain’s hosting provider and historical DNS records may reveal additional compromised infrastructure or patterns of abuse. Given the lack of detailed content analysis, security teams should prioritize monitoring for user reports or endpoint alerts that may clarify the phishing campaign’s specific tactics or targets.