vtw[.]cards
“Trust Wallet Visa Card”
vtw.cards — Контент недоступний (HTTP 502). Уособлення бренду: Trust Wallet; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 3/94 (Fortinet, Gridinsoft, SOCRadar); URLScan malicious verdict; Spamhaus DBL_PHISH; PhishDestroy score 65/100. Реєстратор: NiceNIC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies vtw.cards as an active credential theft domain associated with a generic phishing campaign. Current status remains under investigation following initial detection on March 22, 2026. The domain exhibits characteristics consistent with fraudulent login portals designed to harvest user credentials across unspecified platforms. Security teams are advised to treat this domain as a credible threat vector pending further intelligence updates. This domain was flagged by 3 of 95 VirusTotal vendors as of the latest scan, indicating it remains undetected by conventional security solutions. It resolves to IP address 188.114.97.3 and is registered through NICENIC INTERNATIONAL GROUP CO., LIMITED, using a Let's Encrypt SSL certificate. The domain was created on March 22, 2026, suggesting a recent and potentially opportunistic campaign. Initial trust scores across threat intelligence platforms remain unverified, warranting heightened scrutiny. Current status classifies this domain as active and under investigation, with no confirmed blocklist inclusions at this time. Given the absence of detections and the domain's recent registration, the risk of successful exploitation remains elevated. Immediate containment measures include DNS blocking, SSL certificate revocation requests to Let's Encrypt, and user awareness campaigns highlighting the domain's suspicious attributes. Security teams should also monitor for downstream compromise indicators, such as unauthorized login attempts or credential leaks, associated with accounts handling this domain.
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-09 01:46:16 UTC
Технології · 8 identified
JavaScript runtime built on Chrome V8 engine for server-side development.
JavaScript library for building user interfaces with component-based architecture.
React framework for production with hybrid static and server rendering.
Conversion-tracking pixel by Meta — logs page views and custom events to Facebook/Instagram ad accounts.
www.facebook.comPerformance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comModule bundler for modern JavaScript applications.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of vtw.cards · checked Mar 25, 2026
Докази та зовнішні звіти
PD-20260325-AFE42B Recipient: abuse@nicenic.net, compliance@icann.org Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога