Перейти к отчёту о безопасности
Безопасность домена и анализ угроз
app.trustrawallet.com favicon

app.trustrawallet.com

“TrustraWallet”

Вердикт по угрозе Критический 100/100 оценка доказательств
Доступность Последний известный активный Последнее сохраненное наблюдение о доступности
Всего обнаружений вирусов: 12/90 Spamhaus DBL: DBL_PHISH Олицетворение бренда: Unknown Последний известный активный
01.07.2026 Неизвестно
Actions API
⚠️
Этот домен был отмечен как вредоносный
Механизмы безопасности сообщают об обнаружении: 12. Будьте предельно осторожны — не вводите учетные данные или личную информацию.
Краткий обзор отчёта

www.app.trustrawallet.com is identified as a crypto drainer with 5 of 95 VirusTotal vendors flagging it and listed on one security blocklist, indicating.

Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.

Сводка доказательств

КРИТИЧЕСКИЙ
Оценка
100/100

The domain www.app.trustrawallet.com has been identified as a crypto drainer, associated with activities aimed at extracting cryptocurrency from unsuspecting users. There is no specific brand associated with this domain, but its malicious infrastructure indicates it is part of a broader scheme targeting digital wallet users. The domain's online presence raises significant concerns regarding user security and trust.

Technical indicators for www.app.trustrawallet.com reveal a VirusTotal (VT) score of 4 out of 95, meaning that while not all security vendors flag it, a notable minority does recognize the potential threat. The domain was created on March 22, 2026, and is registered through TuringSign Inc., operating under the name Cosmotown. The domain resolves to the IP address 198.251.89.168, and it is currently blocked by one security blocklist, showing its recognition as a threat. According to information from Google Safe Browsing (GSB), the domain is listed, which contributes to its elevated risk assessment.

Currently, the status of www.app.trustrawallet.com is offline, likely due to proactive response actions taken by security entities. However, it is essential to maintain vigilance since the domain may reappear or be relaunched through different infrastructure. The existing risk remains elevated as the potential for future operations targeting cryptocurrency holders exists. Users and network administrators are advised to block this domain and remain cautious of any communications or links associated with it to prevent possible financial loss.

VirusTotal
VirusTotal
12 det.
URLQuery
URLQuery
2 det.
Сертификат TLS
Просрочен или не проверен -6d
Возраст
6 mo
Зафиксированный статус
Последний известный активный 302
PhishDestroy
DestroyList
В списке
Охват данных VirusTotal 12 / 90 URLQuery 2 det. OTX no community references CF Radar scan completed URLScan capture сохраненный отчет URLScan verdict Анализ завершён TLS Просрочен или не проверен WHOIS 6 mo old Снимок экрана 2 captures · 2 sources

Forensic History & Detection Timeline

This timeline displays historical security and status checkpoints observed by the PhishDestroy automated monitoring network. It records domain lifecycle updates, scanner changes, and threat telemetry over time.
  1. VirusTotal Detections Update Jul 1, 2026 · 04:55 UTC
    VirusTotal scanner detections updated from 1 to 4. Added scanner alerts: ChainPatrol, Fortinet, alphaMountain.ai.

Процесс реагирования на угрозы

Открытие
Checks
Reports
Доступность
11/13

Статус в публичных блок-листах

Evasion analysis

Cloaking suspected: scanner and victim titles differ

Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.

Stored cloaking flag
Not observed
Оценка маскировки
0/6
Last cloaking scan
Server header seen by scanner
LiteSpeed

Scanner note: redirect: raw=redirect_302; http=302; via=https_proxy; location=https://www.app.trustrawallet.com/login; server=LiteSpeed

Title shown to the security scanner302 Found
Title shown to a browser visitorTrustraWallet
Live TDS fingerprint check
Seven Keitaro fingerprints plus a crawler-versus-browser comparison, run from the PhishDestroy scanner when this section scrolls into view.
Waiting

Сохранённый снимок · 2 sources

Аналитика доменов

Домен
URLScan Verdict Анализ завершён score 0 report ↗
Сервер / ASN LiteSpeed · AS53667 PONYNET - FranTech Solutions, US
Репутация IP abuse score 75/100 121 reports Port ScanHackingBrute-Force checked 30.08.2026
Registrar (base domain) TuringSign
IP-адрес 198.251.89.168 US
ГеолокацияUS Cheyenne, US
СетьAS53667 · FranTech Solutions
Обратный поиск IPviewdns.info → rapiddns.io →
Registration (base domain)trustrawallet.com · Создано 22.03.2026 (182d) Expires 22.03.2027
Статус HTTP302 Found (Temporary)
Технические деталиDNS, SAN в протоколе SSL, временные метки
Впервые обнаружено01.07.2026
DOM Analysisanalyzed 04.07.2026score 88/100
IoC Extractionscanned 29.07.20260 wallet · 0 Telegram IoCs
Submitted URLhttps://www.app.trustrawallet.com/
Серверы имёнns10.asurahosting.comns9.asurahosting.com
TLS Fingerprint
TLS Observationvalid from 17.06.2026scanned 04.07.2026
TLS SAN Domainsapp.trustrawallet.com
Favicon Hash
ID дела
Заголовок страницы
TrustraWallet
Сертификат TLS
Просрочен или не проверен · Выдан Let's Encrypt / YE1
Технологии · 6 identified
Detected via Cloudflare Radar · Wappalyzer engine
Пожаловаться на этот домен Предоставьте доказательства и помогите защитить других

Анализ VirusTotal

12 / Поставщики средств безопасности 90 отметили этот домен
View on VT
Last analyzed Previous stored snapshot: 6 detections
ChainPatrol
alphaMountain.ai
BitDefender
Chong Lua Dao
CyRadar
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
Lionic
SOCRadar
Webroot

Доказательства и внешние отчеты

Повлиял ли на вас этот сайт?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.

Европол
Найдите официальный канал отчетности для вашей страны ЕС
National police directory
Остерегайтесь мошенников, предлагающих услуги по восстановлению данных! Преступники могут снова связаться с жертвами, притворяясь следователями, адвокатами или агентами по восстановлению. Не платите авансовые платежи и не делитесь учетными данными. Узнайте больше о мошенничестве при получении компенсаций →

Сообщите об этом в местные органы власти

Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.

Каталог 97 стран
Черновик по шаблону • помощь AI с формулировками включается только с отдельного согласия. Просмотрите и отправьте его самостоятельно

Проверить любой домен

Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.

Сканировать сейчас

Сообщить о фишинге

Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество

Сообщить

Поток оперативных данных об угрозах

Недавние сообщения о фишинге и наблюдаемые изменения доступности

Отслеживать

Будьте в курсе событий, берегите себя

Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание

Поток оперативных данных об угрозах Подать жалобу на это объявление
HTML · IFRAME

Вставить этот отчет

Разместите эту информацию об угрозах на своём сайте или в блоге

embed.html
<iframe
  src="https://phishdestroy.io/ru/embed/domain/app.trustrawallet.com"
  title="PhishDestroy threat report for app.trustrawallet.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>