MALICIOUS — CRITICAL
tronify[.]ltd
Analysis of the domain tronify.ltd, first observed on May 04 2026, indicates that it is being leveraged for a generic phishing campaign.
- VirusTotal
- 3/91
- Blocklists
- No stored match
- उपलब्धता
- अंतिम ज्ञात सक्रिय · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@tldregistrarsolutions.com.
The latest stored availability evidence still shows the domain reachable; 12 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
tronify.ltd — अंतिम ज्ञात सक्रिय (HTTP 200). साक्ष्य सारांश: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); PhishDestroy score 76/100. रजिस्ट्रार: TLD Registrar Solutions.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Evidence Analysis
Analysis of the domain tronify.ltd, first observed on May 04 2026, indicates that it is being leveraged for a generic phishing campaign. The domain resolves to the IPv4 address 188.114.97.3 and is hosted on infrastructure that uses Cloudflare DNS services, as evidenced by the authoritative nameservers jule.ns.cloudflare.com and sterling.ns.cloudflare.com. Registration was performed through TLD Registrar Solutions Ltd., a registrar that does not inherently imply malicious intent but provides no additional verification of the operator’s identity. The domain has been added to a single external security blocklist and is actively blocked by the PhishDestroy sink‑hole, confirming that at least one downstream security product has identified malicious use.
VirusTotal reports that the domain was examined by 91 antivirus and URL‑reputation engines; none of the scanners returned a malicious verdict at the time of analysis. The absence of detections does not constitute a safety assurance, given the dynamic nature of phishing payloads and the possibility of evasion techniques. No public page title, SSL certificate details, HTTP response codes, or Safe Browsing signals are currently available in the intelligence feed, leaving the surface‑web characteristics of the site unverified. The available evidence suggests that the domain is actively employed in a phishing operation, but the specific lure, targeted brands, and credential‑capture mechanisms remain unknown.
Defenders should continue to monitor DNS queries for 188.114.97.3 and consider network‑level blocks for the address and the domain itself. Inclusion of the domain in internal blocklists, along with the existing PhishDestroy block, will reduce exposure. Ongoing re‑scans with VirusTotal or equivalent sandbox services are recommended to detect any future payload changes.
डेटा कवरेज12 recorded checks
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
तकनीकें · 3 identified
Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% विश्वासCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% विश्वासHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% विश्वासवायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of tronify.ltd · checked Jul 27, 2026
साक्ष्य और बाहरी रिपोर्टेंIndependent lookups and source reports
“Зашел на сайт https://tronify.ltd/, обещали trx , подклчючил trust wallet и с него списали все деньги мгновенно, 12 000 долларов, не ведитесь, полный скам”
PD-20260727-F4A5AD Recipient: abuse@tldregistrarsolutions.com Victim safety and official reportingImmediate actions and verified reporting channels
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।