http://trustaws.com/https://trustaws.com/HTTP 502
1.4 KB
734 B
0 internal · 0 external
Content-Type: text/htmlServer: Microsoft-IIS/10.0All stored response-header names (4)
Content-TypeServerDateContent-Length“403 Forbidden”
Analysis indicates that trustaws.com is an active phishing domain targeting cloud-service credentials, registered on July 26, 2026, through Fewmoretaps OU operating under the alias Trustname.com. The domain resolves to IP address 54.39.106.37, hosted by OVH Hosting, Inc. in Canada, and is currently flagged by three security blocklists, including PhishDestroy, MetaMask, and SEAL. Infrastructure analysis reveals the use of nameservers ares.trustname.com, ns1.anycastdns.cz, ns2.anycastdns.cz, and zeus.trustname.com, suggesting a reliance on bulletproof or low-reputation DNS providers.
The SSL certificate is issued by Let's Encrypt (YR2), a common choice among threat actors due to its low barrier to acquisition and short validity periods. VirusTotal telemetry shows a single detection from 91 security vendors, indicating limited but present awareness of the threat. The domain's registration age—just two days old at the time of this report—aligns with typical phishing campaign timelines, where domains are rapidly deployed and discarded.
No specific brand impersonation details or page content analysis are available at this stage, though the domain name suggests a focus on Amazon Web Services (AWS) credential harvesting. Defenders should treat this domain as high-risk and prioritize blocking at the DNS, network, and endpoint layers. Organizations using AWS or similar cloud platforms are advised to monitor for unauthorized access attempts linked to this domain and enforce multi-factor authentication for all credential submissions.
10 fontes externas monitoradas · instantâneo de 10/08/2026
Primeiro valor armazenado: Acessível
0 → 1
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
3 tecnologias identificadas com alta confiança
Google PageSpeed Insights — mobile performance audit of trustaws.com · checked Jul 28, 2026
Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.
http://trustaws.com/https://trustaws.com/Content-Type: text/htmlServer: Microsoft-IIS/10.0Content-TypeServerDateContent-LengthSe você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraEnvie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarRelatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMonitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo