trustwallets[.]xyz
证据摘要
The domain trustwallets.xyz is a dangerous phishing site designed to impersonate the legitimate Trust Wallet cryptocurrency wallet service. By mimicking the official brand, attackers attempt to trick users into entering their recovery phrases, private keys, or login credentials, which would then be stolen. This type of brand impersonation is particularly insidious because victims often believe they are interacting with a trusted platform, leading to irreversible loss of funds. The risk is high, as the site was actively promoted and designed to look convincing.
PhishDestroy's analysis reveals several red flags that confirm the malicious nature of trustwallets.xyz. The domain was created on June 12, 2026, and is registered through GMO Internet Group, Inc. d/b/a Onamae.com. It resolves to IP address 13.248.169.48 and appears on three security blocklists. VirusTotal shows that 11 out of 95 security vendors flag this domain as malicious, and AlienVault OTX has found it in three threat intelligence pulses. Additionally, its SSL certificate is issued by GoDaddy, but this does not guarantee legitimacy—phishing sites routinely obtain certificates. The site has already been taken offline, but users may still be at risk if they visited it before takedown.
If you have visited trustwallets.xyz, do not enter any information. Immediately change your Trust Wallet password and revoke any permissions granted to the site. Run a security scan on your device for malware. If you entered your recovery phrase, assume your wallet is compromised and transfer all assets to a new wallet with a new phrase. Monitor your accounts for suspicious activity and enable two-factor authentication wherever possible. Stay vigilant against similar phishing attempts by always verifying URLs and using official channels only.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月13日
域名情报
技术详情DNS、TLS 名称和时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
技术
识别出 7 项高置信度技术
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控