trustalabs[.]run
“Trusta $TA Coming”
Resumo das evidências
Analysis of trustalabs.run shows a short-lived infrastructure that was created on February 21, 2026 and is currently taken offline. The domain resolves to the Cloudflare address 172.67.150.152, located in the United States and advertised under ASN 13335. A TLS certificate identified as "WE1" is present, indicating that HTTPS was enabled despite the site’s brief lifespan. The page title returned by the server reads "Trusta $TA Coming," which aligns with the reported scam type of a fake airdrop.
The threat profile lists the target brand as "across," suggesting an attempt to impersonate multiple brands rather than a single named entity. Reputation services rate the host extremely poorly: Gridinsoft assigns a trust score of 0 out of 100, and Scamadviser reports a score of 1 out of 100. VirusTotal records three detections out of ninety‑three scanned engines, confirming that at least a subset of security products flagged the domain as malicious. Independent blocklists, including PhishDestroy and ScamSniffer, have already added the domain to their watchlists, and two additional security blocklists reference it.
The combined evidence points to a coordinated fake‑airdrop campaign that leverages the domain to lure victims with promises of token distribution, as implied by the "$TA" token reference in the title. Defenders should immediately block trustalabs.run at network perimeter devices, update intrusion‑detection signatures with the observed IP and SSL fingerprint, and monitor for newly registered domains that share the same creation window, Cloudflare hosting, or similar title patterns. Continuous ingestion of the listed blocklists will help surface any re‑use of the underlying infrastructure.
Data Coverage
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 13/08/2026
9 fontes externas monitoradas Sem correspondência
Inteligência forense
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo