dulcet-shortbread-b4be20[.]netlify[.]app
“Transfer Trust Wallet”
dulcet-shortbread-b4be20.netlify.app — 未验证. 品牌冒充:Trust Wallet; 诈骗类型:Generic Phishing. 证据摘要: VirusTotal 11/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, Forcepoint ThreatSeeker); URLQuery 1 alert; 1 external blocklist match (ScamSniffer); PhishDestroy score 83/100. 注册商: Netlify.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of dulcet-shortbread-b4be20.netlify.app indicates an active infrastructure used to impersonate Trust Wallet. The domain was created on 8 May 2026 and is hosted on Netlify, resolving to the IPv4 address 63.176.8.218, which belongs to an AWS EC2 instance in the eu-central-1 region (Germany). The site presents a valid DigiCert Global G2 TLS RSA SHA256 2020 CA1 certificate, providing HTTPS connectivity with HTTP status 200. The page title returned by the server is “Transfer Trust Wallet”, matching the declared brand target. The domain appears on two reputable blocklists (PhishDestroy and ScamSniffer) and is currently listed as active under investigation. Gridinsoft assigns a trust score of 0/100, reflecting a high risk assessment. No detection data from VirusTotal is available; the absence of detections does not imply safety. Concrete evidence beyond the infrastructure and title is not yet available, as the page content has not been examined. Defenders should add the domain to outbound filtering rules, monitor DNS queries for the IP address 63.176.8.218, and consider sinkholing the host to disrupt traffic. Continuous re-scanning of the URL for malicious payloads is recommended, and any observed credential submission should be treated as compromised. Organizations using Trust Wallet should alert users to verify URLs before entering credentials and enforce multi-factor authentication where possible.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | dulcet-shortbread-b4be20.netlify.app/main.js |
malware | Detects file containing Telegram Bot API |
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。