Security Scan Report: trustwellet.netlify.app

Site favicon
Submitted: Sep 24, 2026, 1:45:11 PMCompleted: Sep 24, 2026, 1:45:49 PMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 82%

5
Risk Score

Fake 'Trust Wallet Pro' on a Netlify subdomain impersonating the Trust Wallet brand and showing a passcode-entry keypad plus USDT deposit flow — a crypto phishing/drainer page. Do not enter any credentials or seed phrase.

Risk Factors (5)
Impersonation of Trust Wallet brand on a non-official domain
Passcode-entry screen designed to harvest wallet unlock credentials
Hosted on a free instant-publish platform subdomain with unknown creation date
Prompts to send USDT (TRC20) funds to an address inside an impersonated wallet
No reputation/ranking for the host
Safety Factors (2)
DOM parsing found no standard HTML forms
Verdict cited a credential/login form, but DOM analysis found no password field (real or disguised) or payment field, and no other hard signal — credential-phishing framing unsupported; risk adjusted from 8 to 3
Domain age information unavailable

Details

Page Title

Trust Wallet Pro

Scan Type

public

Domain Name Analysis

Domain 'trustwellet.netlify.app' uses the application-focused generic top-level domain (.app), featuring subdomain 'trustwellet'. The second-level label 'netlify' is 7 characters long split between 2 vowels and 5 consonants. Tokenizing the label suggests three words: net, li, fy. Expect two characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://trustwellet.netlify.app/

Page Load Overview

4.24s
Total Load Time
243 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:743 chars
Detector Agreement:100%

Website Classification

Primary Category

cryptocurrency blockchain54% confidence
Type: static
Method: ml+structural

All Detected Categories

cryptocurrency blockchain
54%
finance banking
47%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
363.176.8.218Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
1104.17.25.14Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1142.250.154.95Google · CDNUnited States
AS15169Google LLC
1185.199.108.133Fastly · CDNUnited States
AS54113Fastly, Inc.
135.157.26.135Aws · CLOUDFrankfurt am Main, Hesse, Germany
AS16509Amazon.com, Inc.
1185.199.109.133Fastly · CDNUnited States
AS54113Fastly, Inc.
1142.251.13.94Google · CDNUnited States
AS15169Google LLC
97--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T11392AB6020F534B34167D4C6A9A69F1BBFA1EA57CA9B510036FD4BE40FDBC95DC0342A

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:dbRbF3djlHN+A6IQ8jxRPiBqWuuuuIPMp7CBSUM:dYWQ8jxR6BqWuuuubp7CBSUM

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:21014:IAJBBtCGgKAT8YCFA8SAQClCQQAM7ydBAmUKAkBSiBABgGIaBKRKTC0lsMGKQGliREcJCIKFC0CEogyoDQEBL6IQC2uABZDj

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:3c18000018181818
Perceptual Hash:cc269999ce663399
Difference Hash:2a320c0c32323232
Wavelet Hash:1b1b03031b1b1b1b
Color Hash:#93821f

Other Hashes

Crop Resistant:2a320c0c32323232

Scan History

Scan history not available

Unable to load historical scan data