trumpwallet[.]site
“www.trumpwallet.site”
trumpwallet.site — Неперевірений. Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 5/91 (alphaMountain.ai, Bfore.Ai PreCrime, Chong Lua Dao, Forcepoint ThreatSeeker, Gridinsoft); PhishDestroy score 65/100. Реєстратор: Beget.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, www.trumpwallet.site, is flagged as an active cryptocurrency scam operating since February 21, 2026. Analysis indicates it functions as a crypto drainer, a threat type designed to siphon digital assets from victims' wallets. The domain resolves to IP address 185.207.0.110, hosted on infrastructure belonging to AS198610 Beget LLC, a provider based in Russia. The site currently returns an HTTP 200 status, confirming its operational status as of July 12, 2026, though no SSL certificate is present, increasing the risk of interception or manipulation of user data. Infrastructure analysis reveals the domain uses nameservers ns1.beget.com, ns2.beget.com, ns1.beget.pro, and ns2.beget.pro, consistent with the registrar Beget LLC. Security vendors have begun detecting this domain, with two out of ninety-five flagging it as malicious on VirusTotal. While the exact content of the site remains unanalyzed, the page title matches the domain name, suggesting a direct impersonation or branding strategy. The absence of a recognized brand in the provided data prevents confirmation of any specific entity being mimicked beyond the generic crypto wallet theme implied by the domain name. Defenders should treat this domain as high-risk due to its confirmed crypto drainer classification and active status. Network-level blocking is recommended for the domain and its associated IP 185.207.0.110. Security teams should monitor for connections to this infrastructure, particularly in environments where cryptocurrency transactions occur. Given the domain's recent creation and low detection rate, additional variants or related infrastructure may emerge, warranting proactive threat hunting for similar naming patterns or hosting providers. No further technical details about the drainer mechanism or victim targeting are available at this time.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога