Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
tronfuel[.]app
“tronfuel — Zero-Fee USDT to TRX Swap | No Gas, No KYC”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
Analysis indicates that the domain tronfuel.app is actively operating as a phishing site targeting cryptocurrency users. Registered on May 28, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, the domain resolves to the IP address 172.67.217.173, which is hosted on Cloudflare's infrastructure (AS13335) in the United States. The domain's nameservers (aria.ns.cloudflare.com and osmar.ns.cloudflare.com) further confirm its reliance on Cloudflare services, a common tactic to obscure hosting origins and evade takedowns. The page title, 'tronfuel — Zero-Fee USDT to TRX Swap | No Gas, No KYC,' explicitly advertises a cryptocurrency swap service, a known vector for phishing campaigns designed to deceive users into transferring assets to attacker-controlled wallets. While the exact mechanics of the scam remain unconfirmed due to the absence of direct website analysis, the combination of a newly registered domain, Cloudflare obfuscation, and a high-risk theme aligns with patterns observed in crypto drainer and fraudulent swap schemes. Detection data supports this assessment: the domain appears on one security blocklist, and two of 91 security vendors on VirusTotal have flagged it as malicious. The Gridinsoft trust score of 0/100 further corroborates its classification as a high-risk domain. Technologies detected on the site include Unpkg, jsDelivr, Axios, and HTTP/3, which are legitimate but frequently exploited in phishing infrastructure to deliver malicious payloads or facilitate credential harvesting. Defenders should treat this domain as an active threat. Network-level blocking of 172.67.217.173 and the domain itself is recommended, alongside monitoring for related infrastructure registered through NICENIC INTERNATIONAL GROUP CO., LIMITED or utilizing Cloudflare nameservers.
لقطة الأدلة المرسلة
- أُرسل
- سجلات الدفتر
- 1
- معرّف القضية
PD-20260531-7181A5- عنوان الصفحة الملتقطة
- tronfuel — Zero-Fee USDT to TRX Swap | No Gas, No KYC
- ملف PDF
- دليل PDF
الأساس القانوني
النص الكامل للدليل
Acceptable Use Policy (AUP): The domain tronfuel.app is engaged in activities that constitute phishing, which is explicitly prohibited under your AUP. This domain is being used to deceive users into providing sensitive information.
Terms of Service (TOS): The use of tronfuel.app for fraudulent purposes violates your TOS, which reserves the right to suspend or terminate services for any activities that involve fraud or deception.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA) - 18 U.S.C. § 1030: This federal law prohibits unauthorized access to computers and the use of such access to commit fraud.
Wire Fraud - 18 U.S.C. § 1343: This law makes it illegal to use wire communications in furtherance of a scheme to defraud, which includes phishing activities.
Anti-Phishing Consumer Protection Act - H.R. 5418: This act aims to combat phishing by prohibiting the use of misleading electronic communications.
Regulatory Note: Failure to take immediate action against tronfuel.app may expose your organization to legal liability and regulatory scrutiny. Compliance with your AUP and TOS is essential to mitigate risks associated with domain abuse.
Data Coverage
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | orangerosehamburg.com |
malicious | Sinkholed |
| DNS4EU | orangerosehamburg.com |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
أدلة النتيجة المحفوظة
النتيجة وإسناد الإزالة
- النتيجة
live_content- التوفر
content_live- السبب
content_served- درجة الثقة
- 90%
- أول رصد
- أحدث رصد
SHA-256 للدليل 0af005199712
المخطط الزمني للاكتشاف
-
التوفر
أول قيمة محفوظة: غير معروف
993d00c35140 -
التوفر
غير معروف ← محتوى نشط
6034a43fd687 -
التوفر
محتوى نشط ← غير معروف
8f72e88e7591 -
التوفر
غير معروف ← محتوى نشط
4fba6699baa1 -
التوفر
محتوى نشط ← غير معروف
7cebcfd4071c -
التوفر
غير معروف ← محتوى نشط
5f9237c0081e -
التوفر
محتوى نشط ← غير معروف
ca255b61650a -
التوفر
غير معروف ← محتوى نشط
530ae0f20175 -
التوفر
محتوى نشط ← غير معروف
d8f7d37d7f95 -
التوفر
غير معروف ← محتوى نشط
0af005199712
بلاغات المجتمع
أبلغ عنه عضو واحد في المجتمع؛ شوهد أول مرة في 01/06/2026
- البلاغات المحفوظة
- 1
- عناوين URL الفريدة المبلغ عنها
- 1
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات
حُدّدت ٦ تقنيات عالية الثقة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of tronfuel.app · checked Jun 1, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب