twcard[.]link
“ModBath Studio | Modern Bathroom Design”
twcard.link — 隐形 · 可达. 诈骗类型:Crypto Drainer. 证据摘要: VirusTotal 5/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet, Gridinsoft, SOCRadar); Spamhaus DBL_SPAM; cloaking observed; PhishDestroy score 93/100. 注册商: Tucows.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain www.twcard.link has been identified as a generic phishing threat, specifically a crypto drainer designed to steal cryptocurrency from unsuspecting victims. The site is currently offline, but it was active recently and posed a significant risk to users. The page title was "ModBath Studio | Modern Bathroom Design," which suggests the attackers may have attempted to impersonate a legitimate bathroom design brand to lure victims.
According to intelligence data, this domain was registered through Tucows Domains Inc. and resolves to IP address 216.150.16.129. It was created on May 20, 2026, and has an SSL certificate from Let's Encrypt (R12), which gives it a false sense of legitimacy. VirusTotal analysis shows that 5 out of 95 security vendors flagged this domain as malicious, and it appears on one security blocklist. These indicators point to a coordinated phishing campaign targeting cryptocurrency users.
Given that the domain has been taken offline, the immediate threat is neutralized. However, users should remain vigilant as similar domains may appear. PhishDestroy recommends that anyone who may have interacted with www.twcard.link check their crypto wallets for unauthorized transactions and avoid clicking on links from unsolicited messages. Always verify the authenticity of websites before entering sensitive information, especially those related to cryptocurrency.
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
所用技术 · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%Facebook pixel is an analytics tool that allows you to measure the effectiveness of your advertising.
facebook.com 置信度 100%VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of twcard.link · checked May 20, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。