swap[.]trxer[.]org
“USDT ↔ TRX スワップ & TRON エネルギーレンタル|高速 · 安全 · 信頼性”
Ringkasan bukti
Analysis of swap.trxer.org, registered on 21 February 2026, indicates a high‑confidence crypto‑related impersonation campaign targeting the Tron ecosystem. The site presented a Japanese‑language page title “USDT ↔ TRX スワップ & TRON エネルギーレンタル|高速 · 安全 · 信頼性”, directly referencing TRX and Tron energy rental, confirming the brand‑impersonation intent. DNS resolution points to 172.67.155.154, an address owned by Cloudflare (AS13335) located in the United States, a common hosting choice for fast‑flux and abuse. The HTTPS certificate is identified as “WE1”, which does not match any known legitimate Tron or exchange authority, further suggesting a fraudulent setup.
The domain is currently offline, but historical scans show that three of ninety‑three VirusTotal scanners flagged the host, and the site appears on a single external blocklist. Gridinsoft assigned a trust score of 0 / 100, indicating extreme malicious confidence. The domain has been added to PhishDestroy’s blocklist, confirming that at least one anti‑phishing service recognized it as a threat. The evidence base is limited to passive DNS, certificate data, and third‑party reputation feeds; no live content or HTTP response was captured after the takedown, so the exact payload, phishing form, or malicious redirects remain unknown.
Defenders should continue to block the IP 172.67.155.154 at the network perimeter, add swap.trxer.org to URL filtering and DNS sinkhole lists, and monitor for any future re‑registration or similar sub‑domains that reuse the “trxer.org” suffix. Security teams handling Tron‑related assets should treat any unsolicited communication referencing USDT‑TRX swaps or energy rentals as suspicious, and users should be instructed to verify URLs against official Tron services. Ongoing telemetry from threat‑intel platforms should be reviewed for new indicators of compromise linked to this seed.
Data Coverage
Alur Tanggapan Ancaman Pipeline
Cakupan daftar blokir
10 sumber eksternal dipantau · snapshot tersimpan 12/08/2026
Analisis VirusTotal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive