# tronlinkwalletapp.com — SUSPICIOUS > PhishDestroy identifies tronlinkwalletapp.com as a crypto drainer scam. The domain, created July 29, 2025, mimics TRON wallet apps to steal crypto assets. ## Summary PhishDestroy identifies tronlinkwalletapp.com as an active crypto drainer scam under investigation. The domain mimics the legitimate TRONLink wallet application to deceive users into connecting their wallets and authorizing malicious transactions. Based on seed 7f7723, this site employs a drainer kit designed to siphon cryptocurrency assets upon wallet connection. The fraudulent infrastructure is engineered to appear legitimate at first glance, leveraging social engineering to exploit user trust in popular wallet brands. This domain was registered on July 29, 2025 through Gname.com Pte. Ltd. and resolves to IP address 104.21.42.160. It holds a valid SSL certificate issued by Google Trust Services, which may enhance its perceived legitimacy. VirusTotal currently reports 0 out of 95 detections, indicating it has not yet been widely flagged by security vendors. However, this domain has not been vetted by Google Safe Browsing (GSB status: unknown) and remains unlisted in major threat intelligence blocklists. The combination of a recent registration date, lack of detections, and active hosting suggests this is a newly deployed threat infrastructure designed for rapid deployment and potential evasion of detection systems. The current status of tronlinkwalletapp.com remains active as of seed 7f7723, with no confirmed takedown efforts observed. Users should immediately block access to this domain at the network level and avoid any interaction. All cryptocurrency users are advised to verify wallet URLs through official channels and enable transaction confirmation alerts. While this domain presents an elevated risk due to its drainer nature and recent deployment, the absence of detections highlights the importance of proactive threat intelligence sharing. Remaining risk includes potential expansion of this campaign to similar domains or continued operation until flagged by security vendors or takedown by hosting providers. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2025-07-29 14:08:47 - Registrar: Gname.com Pte. Ltd. - IP: 104.21.42.160 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/bd3f48fb-9f51-4c3a-a3e1-85d53407cb2a - PhishDestroy: https://phishdestroy.io/domain/tronlinkwalletapp.com/ - LLM endpoint: https://phishdestroy.io/domain/tronlinkwalletapp.com/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/tronlinkwalletapp.com/ Last updated: 2026-03-24