Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is complaint@gname.com.
The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
tr00113[.]cc
Análisis de phishing y seguridad de tr00113.cc
“USDT 支付中心”
tr00113.cc — error del servidor (HTTP 503). Resumen de las pruebas: VirusTotal 6/91 (alphaMountain.ai, CRDF, CyRadar, Forcepoint ThreatSeeker, Gridinsoft); PhishDestroy score 78/100. Registrador: Gname.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
Analysis of tr00113.cc, created on February 21, 2026, indicates that the domain is actively hosting a generic phishing page titled "USDT 支付中心". The domain resolves to the IPv4 address 192.252.182.16, which belongs to AS152194 operated by CTG Server Limited and is geolocated in Hong Kong. DNS resolution is served by a12.share-dns.com and b12.share-dns.net, and the site presents a valid Let’s Encrypt certificate (R13) with HTTPS enabled, accompanied by HTTP Strict Transport Security (HSTS). The web server is identified as Nginx and the page includes resources from the jsDelivr CDN.
Gridinsoft assigns a trust score of 0 out of 100, reflecting a high likelihood of malicious activity. The domain was registered through Gname.com Pte. Ltd. and is currently listed on one security blocklist; PhishDestroy has already blocked the domain. VirusTotal analysis shows that 7 of 93 scanned security vendors flag the domain, corroborating the suspicion. The HTTP response returns status code 200, indicating that the content is being served without redirection or error.
While the page title suggests a focus on USDT payments, no additional content details are available from the intelligence feed. Uncertainties remain regarding the specific phishing kit or any victim interaction patterns, as no payload or credential capture mechanisms have been disclosed. Defenders should add the domain and its associated IP address to network‑level block lists, monitor DNS queries for the listed nameservers, and enforce TLS inspection to capture any malicious payloads delivered via the jsDelivr CDN. Continuous scanning with multi‑engine aggregators is recommended to capture any future changes in detection status.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Tecnologías · 3 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Free public CDN for open-source projects, serving files from npm and GitHub.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Análisis de VirusTotal
Evidencias archivadas
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of tr00113.cc · checked Mar 2, 2026
Datos y informes externos
PD-20260125-4A396B Recipient: complaint@gname.com ¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.