trustwallet-genesis[.]com
“Un instant…”
Зведення доказів
The domain trustwallet-genesis.com was registered on February 21, 2026 through NiceNIC International Group Co., Limited and is currently taken offline. Infrastructure analysis shows the domain resolves to the IP address 172.67.180.174, which is hosted by Cloudflare (AS13335) in the United States. The authoritative nameservers are linda.ns.cloudflare.com and ricardo.ns.cloudflare.com, and the service is configured with HTTP Strict Transport Security (HSTS) and HTTP/3, indicating a modern TLS stack despite the absence of a valid SSL certificate. The site was observed to present the page title "Un instant…" and is classified as a crypto scam targeting the Trust Wallet brand.
It appears on a single security blocklist and has been explicitly blocked by the PhishDestroy service. VirusTotal scans recorded four positive detections out of ninety‑three security vendors, reinforcing the malicious assessment. No additional public threat‑intel sources such as OTX or Safe Browsing entries were noted.
The limited detection footprint suggests a short‑lived campaign, yet the use of reputable hosting and recent registration indicates a purposeful attempt to leverage brand trust. Defenders should immediately add trustwallet-genesis.com to URL filtering and DNS blocklists, monitor traffic to the associated Cloudflare IP for any residual activity, and enforce endpoint controls that flag connections to newly registered domains associated with cryptocurrency branding. Continuous re‑evaluation is advised in case the domain is re‑activated or similar clones appear, and security teams should share indicators of compromise with broader threat‑sharing communities to improve collective detection.
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-20260211-CA07CC- PDF-файл
- PDF із доказами
Повний текст доказів
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 12.08.2026
Хронологія виявлення
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
-
Статус домену
Доступний → Недоступний
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога