trustusdt.online
“SEND USDT”
The domain trustusdt.online is currently active and serves a generic phishing campaign as indicated by its classification.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Зведення доказів
The domain trustusdt.online is currently active and serves a generic phishing campaign as indicated by its classification. Registration data shows the domain was created through GoDaddy.com, LLC, and it is served by the authoritative name servers ns37.domaincontrol.com and ns38.domaincontrol.com, both typical of GoDaddy‑hosted domains. An HTTP request to the root URL returns a 200 OK status, confirming that a web service is reachable.
VirusTotal analysis reports that five out of ninety‑one security vendors have flagged the domain, suggesting that at least a minority of scanners have identified malicious characteristics. The domain is listed on a single external security blocklist and is actively blocked by the PhishDestroy mitigation service, providing additional evidence of its abuse. No public page title or SSL certificate details have been disclosed, and the underlying hosting IP address, geographic location, or TLS configuration remain unverified in the available data.
Consequently, defenders should treat any traffic to trustusdt.online as potentially hostile. Recommended actions include adding the domain to local deny lists, updating intrusion‑prevention signatures to cover the observed hostnames, and monitoring DNS queries for the associated name servers. Continuous re‑evaluation is advised, as additional detection signals may emerge from further scanning or community reporting.
Розвіддані з мережевої безпеки
Forensic History & Detection Timeline
-
Threat First Observed Jul 28, 2026 · 19:33 UTCDomain ingestion complete. Initial state is marked as alive.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Evasion analysis
Cloaking & traffic-distribution check
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not yet scanned
- Last cloaking scan
Scanner note: timeout: raw=timeout; http=0; via=http_proxy; error=HTTPConnectionPool(host='82.27.233.247', port=7588): Read timed out. (read timeout=7)
Збережений знімок · 1 source
Аналітика доменів
Технічні подробиціDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Повідомлення спільноти
Повідомив 1 учасник спільноти; уперше помічено 30.05.2026
- Збережені повідомлення
- 1
- Унікальні URL
- 1
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога