hickory[.]website
“TRON Wallet Integration Example”
Résumé des preuves
This domain, hickory.website, was identified as a high-risk crypto scam impersonating Binance, with infrastructure analysis confirming its malicious intent prior to being taken offline. Registered on February 21, 2026, the domain resolved to IP 66.29.146.168, hosted on AS22612 (Namecheap, Inc.) in the United States. The SSL certificate, issued by Sectigo Public Server Authentication CA (DV R36), provided no additional trust signals, as Domain Validation certificates are routinely abused in phishing campaigns. The page title, 'TRON Wallet Integration Example,' suggests the scam targeted users of TRON-based cryptocurrency wallets, aligning with the broader pattern of Binance brand impersonation for fraudulent crypto transactions. Security vendors and blocklists flagged the domain aggressively: PhishDestroy, Polkadot, Enkrypt, and Codeesura all blocked it, and it appeared on four independent security blocklists.
While VirusTotal recorded 10 detections out of 93 vendors, this partial coverage is consistent with domains that evade initial scans or are reported after partial exposure. Gridinsoft assigned a trust score of 0/100, reinforcing its classification as malicious. No evidence links this domain to a known phishing kit, and the exact content beyond the page title remains unanalyzed due to its offline status. Defenders should treat this domain as confirmed malicious infrastructure. The IP (66.29.146.168) and hosting provider (Namecheap) are recurrent in phishing operations, warranting monitoring for re-registration or IP reuse.
The SSL issuer (Sectigo) is not inherently suspicious, but the DV certificate type offers no organizational validation. Given the domain’s short lifespan and rapid takedown, it likely operated as part of a larger campaign; defenders should cross-reference the IP, registrar, and brand impersonation (Binance) in logs for related activity. No Safe Browsing or OTX data was provided, so additional context on distribution methods (e.g.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 10/08/2026
7 sources externes surveillées Aucune correspondance
Analyse forensique
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif