跳转到安全报告
⚠️
该域名已被标记为恶意域名
安全引擎报告检测:10。 报告匹配的公共黑名单:1。 请格外小心——不要输入凭据或个人信息。
域安全和威胁情报

trustwallet-begonia-038e52[.]netlify[.]app

威胁判定 关键 80/100 证据评分
可用性 未验证 当前可达性未经验证
病毒检测总数:10/91 存储的阻止列表匹配项:1 品牌冒充:Trust Wallet
2026年8月14日 Trust Wallet CDN
报告概览

trustwallet-begonia-038e52.netlify.app — 未验证. 品牌冒充:Trust Wallet; 诈骗类型:Seed Phrase Theft. 证据摘要: VirusTotal 10/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, ESET, Forcepoint ThreatSeeker); URLScan malicious verdict; 1 external blocklist match (ScamSniffer); PhishDestroy score 80/100. 注册商: Netlify.

为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。

证据摘要
重要
Ref
57A28A40
评分
80/100

trustwallet-begonia-038e52.netlify.app is a tenant hostname on Netlify, not a separately registered domain. PhishDestroy first observed the hostname on Aug 14, 2026. The hostname explicitly references Trust Wallet; stored content metadata identifies the same apparent target. Page analysis recorded additional brand references to Telegram. Stored page analysis classifies the content as seed phrase theft. Current evidence score: 80/100 (critical).

Positive findings are stored from 3 sources: VirusTotal, ScamSniffer, and URLScan. VirusTotal recorded 10 detections among 91 engines: alphaMountain.ai, BitDefender, Chong Lua Dao, ESET, Forcepoint ThreatSeeker, Fortinet, G-Data, Gridinsoft, Lionic, Sophos on Aug 20, 2026 at 02:11 UTC. ScamSniffer listed the hostname in the separate external-blocklist snapshot on Aug 20, 2026 at 10:20 UTC. URLScan returned a malicious verdict with score 100; scan metadata linked the capture to Trust Wallet and assigned phishing as its category on Aug 14, 2026 at 17:08 UTC. Non-positive and contextual checks: Google Safe Browsing returned no flag on Aug 20, 2026 at 08:21 UTC.

The collector marked the hostname reachable on Aug 15, 2026 at 01:18 UTC, but did not retain the HTTP response code. Netlify is the hosting platform for this tenant, not its registrar. At collection time, the hostname resolved to 63.176.8.218 on AS16509 (AMAZON-02 - Amazon.com, Inc., US). The IP and ASN identify shared Netlify infrastructure, not the tenant operator. DOM analysis on Aug 14, 2026 at 14:22 UTC returned 0/100; the source detections above were recorded separately. The evidence archive retains 2 visual captures from PhishDestroy and URLScan; no page title was retained, so the captures preserve the landing-page appearance. IoC extraction on Aug 15, 2026 at 04:00 UTC retained 3 format-validated wallet addresses and 0 Telegram indicators. The platform TLS certificate was issued by DigiCert Inc with validity through Mar 19, 2027; checked Aug 14, 2026 at 13:02 UTC.

The content indicators and 3 positive source findings support the current Trust Wallet-themed seed phrase theft classification.

VirusTotal
VirusTotal
10 det.
URLScan
URLScan
ScamAdviser
Scamadviser
80/100
TLS 证书
DigiCert Inc
观测状态
未验证
PhishDestroy
DestroyList
已列入
数据覆盖范围 VirusTotal 10 / 91 URLQuery 未检查 PhishStats 未检查 OTX no community references CF雷达 scan completed URLScan capture 存储的报告 URLScan verdict malicious DNS 阻断 未检查 TLS valid certificate, 211d WHOIS not parsed 屏幕截图 2 captures · 2 sources 重定向链 未探查 Scamadviser 80/100

威胁响应 Pipeline

发现
Checks
Reports
可用性
12/14

公共封禁名单状态

已保存的截图

域名情报

域名
URLScan Verdict 恶意 score 100 Phishing brand: Trust Wallet report ↗
Wallet IoCs 3 format-validated 0x55d398326f99059fF775485246999… 0x66b57dbaef495a29ebbef38b93431… 0x7b7F225fa2bd571A5912B5b670D3F…
服务器 / ASN Netlify · AS16509 AMAZON-02 - Amazon.com, Inc., US
IP Context Netlify shared edge origin IP hidden Edge-IP 声誉不属于此域。
平台提供商 Netlify US(US)
滥用举报联系方式abuse@netlify.com
IP 地址 63.176.8.218 CDN
地理位置DE Frankfurt am Main, DE
网络AS16509 · Amazon.com, Inc.
源 IP 隐藏在 CDN 代理后面。边缘地址的反向 IP 结果包含不相关的租户;查找源头需要被动 DNS 或证书透明数据。
技术细节DNS、SSL SAN、时间戳
首次发现2026年8月14日
DOM Analysisanalyzed 2026年8月14日score 0/1001 brand signal
IoC Extractionscanned 2026年8月15日3 wallet · 0 Telegram IoCs
Submitted URLhttp://trustwallet-begonia-038e52.netlify.app/
TLS Fingerprint
TLS Observationvalid from 2026年2月16日scanned 2026年8月14日
TLS SAN Domainsnetlify.app
Impersonates
Telegram
TLS 证书
Valid transport encryption · 颁发者 DigiCert Inc · valid for 211 days
所用技术 · 2 identified
Netlify
PaaS CDN

Netlify providers hosting and server-less backend services for web applications and static websites.

www.netlify.com 置信度 100%
HSTS
安全

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

www.rfc-editor.org 置信度 100%
Detected via Cloudflare Radar · Wappalyzer engine
举报此域名 提交证据,帮助保护他人

VirusTotal 分析

10 / 91 安全供应商标记了该域
View on VT
Last analyzed First positive detection Previous stored snapshot: 10 detections
alphaMountain.ai
BitDefender
Chong Lua Dao
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
Lionic
Sophos
网站性能分析

Google PageSpeed Insights — mobile performance audit of trustwallet-begonia-038e52.netlify.app · checked Aug 14, 2026

100
Good
Performance
FCP
0.76s
First Contentful Paint
LCP
0.76s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
1.19s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

证据与外部报告

您是否受到本网站的影响?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

如果您与此域交互、输入个人信息或连接加密货币钱包,请立即采取行动。以下资源可帮助您报告事件并保护自己。

欧洲刑警组织
查找您所在欧盟国家/地区的官方报告渠道
National police directory
警惕“数据恢复”诈骗! 犯罪分子可能会冒充调查员、律师或追债员再次联系受害者。 请勿支付预付费用或共享凭证。 没有任何合法服务可以保证恢复被盗的加密货币。 了解有关康复欺诈的更多信息 →

向当地主管部门报告

选择您所在的国家/地区以获取 官方网络犯罪联系人创建投诉草稿 →

97个国家目录
AI辅助草稿——事件详细信息由AI提供商处理 自行审核并提交

检查任意域名

使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析

立即扫描

举报网络钓鱼

将可疑域名提交至我们的威胁数据库——保护社区

报告

实时威胁动态

最近的网络钓鱼报告和观察到的可用性变化

监控

随时掌握最新信息,确保安全

请实时监控威胁,或者如果您认为这是误报,请对该条目提出异议

实时威胁动态 对该列表提出异议

针对受害者的建议与指导

据估计 $51 billion 于2024年流入非法加密货币钱包(source). 如果你曾与 trustwallet-begonia-038e52.netlify.app — 立即行动。

我应该立即采取什么措施?
紧急
  • 撤销令牌授权 — use revoke.cash 撤销授予恶意智能合约的访问权限
  • 转移剩余资金 迁移到一个全新的钱包。该受损钱包已不再安全
  • 更改所有密码 — 电子邮件、Exchange 账户,以及任何使用同一密码的账户
  • 启用双因素认证 使用身份验证器应用(而非短信)。禁用基于短信的恢复功能
  • 冻结卡片 如果您在钓鱼网站上输入了银行信息
我应该为报告收集哪些信息?
联邦调查局(FBI)指南

联邦调查局,其中最重要的细节是交易数据:

  • 加密货币地址 — 诈骗分子的钱包(例如, 0x5856...35985)
  • 金额及加密货币类型 — 确切金额(例如:1.02345 ETH、0.5 BTC、500 USDT)
  • 交易 ID(哈希值) — 唯一的区块链交易标识符
  • 确切日期和时间 — 每笔交易的详情以及与诈骗者的首次接触
  • 屏幕截图 — 诈骗网站、聊天消息、电子邮件、钱包交易、社交媒体
  • 所有网址和域名 诈骗者使用的(包括 trustwallet-begonia-038e52.netlify.app)
  • 通信 — 诈骗者使用的电子邮件、短信、电话号码、用户名

即使你并不了解所有细节—— 不管怎样都要提交报告. 即使信息不完整,对调查仍有帮助。

我应该向哪里举报这起诈骗?
  • 联邦调查局(FBI)IC3 — 互联网犯罪投诉中心(美国联邦举报渠道)
  • 欧洲刑警组织 — 欧洲网络犯罪报告(欧盟)
  • Chainabuse — 在各交易所和平台上标记诈骗钱包
  • 您的加密货币交易所 — notify its fraud team immediately; it may be able to preserve records or restrict funds held on its platform
  • 当地警方 — 即使无法立即采取行动,也能留下正式记录

A report is not a guarantee of recovery or investigation, but prompt, accurate transaction data can help authorities and service providers trace the incident.

加密货币诈骗通常是如何运作的?
  • 虚假网站 — 与正规网站完全一致的克隆网站,仅域名略有改动
  • 恶意批准 — “连接钱包”的提示会使攻击者获得无限的代币消费权限
  • 猪的屠宰 — 通过Telegram/WhatsApp/交友软件花数周时间建立信任,随后钱被骗走
  • 退款诈骗 — fraudsters pose as recovery agents and demand upfront fees. Never share a seed phrase or pay before independently verifying the provider
  • 虚假广告与空投 — 谷歌/社交媒体广告和“免费代币”优惠会导致钱包被掏空
  • 利用人工智能实施的诈骗 — 深度伪造、自动化网络钓鱼以及人工智能生成的网站,使得欺诈行为更难被察觉
将来我该如何保护自己?
  • 使用硬件钱包 (Ledger、Trezor)。切勿在浏览器钱包中存储大额资金
  • 将官方网站添加到书签 — 切勿点击来自电子邮件、私信或广告中的链接
  • 阅读每项批准 — 签名前请验证权限。拒绝无限制的批准
  • 验证域名 — 查看 PhishDestroy 在进行互动之前,请检查HTTPS、拼写和域名注册时间。
  • “好得令人难以置信”=骗局 — 保证收益、名人代言、紧迫的截止日期
HTML · IFRAME

嵌入此报告

在您的网站或博客上分享此威胁情报

embed.html
<iframe
  src="https://phishdestroy.io/zh/embed/domain/trustwallet-begonia-038e52.netlify.app"
  title="PhishDestroy threat report for trustwallet-begonia-038e52.netlify.app"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>