# tronscqn.lat — SUSPICIOUS > PhishDestroy identifies tronscqn.lat (VirusTotal 0/95) — a crypto drainer posing as a legitimate service. Domain registered March 23, 2026 via Dynadot. ## Summary PhishDestroy identifies the domain tronscqn.lat as an active crypto-draining operation designed to steal digital assets. The site masquerades as a genuine platform, using a Let’s Encrypt SSL certificate to appear trustworthy. Visitors are at risk of wallet compromise if connected or manipulated into approving fraudulent transactions. This domain was flagged after VirusTotal returned 0 out of 95 security engines detecting the threat, indicating zero signature coverage. The domain was created on March 23, 2026 and is registered through Dynadot LLC, a known registrar. It resolves to IP 104.21.72.130, hosted on a cloud provider leveraging shared infrastructure. Reviewing Whois registrant details reveals a privacy-protected registrant, a common tactic to obscure ownership and hinder takedown efforts. If you visited tronscqn.lat or connected a wallet, immediately revoke any unauthorized permissions in your wallet settings and transfer remaining funds to a fresh address. Do not interact further. Report the domain to your antivirus vendor and block it via DNS or host file. Consider rotating all credentials used on crypto platforms. Act promptly to mitigate asset loss. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-03-23 00:56:32 - Registrar: Dynadot LLC - IP: 104.21.72.130 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/96347ad7-ba62-40f4-9410-ac694c527516 - PhishDestroy: https://phishdestroy.io/domain/tronscqn.lat/ - LLM endpoint: https://phishdestroy.io/domain/tronscqn.lat/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/tronscqn.lat/ Last updated: 2026-03-29