trontx[.]net
Pemeriksaan phishing dan keamanan trontx.net
“Google”
trontx.net — Terselubung · dapat dijangkau (HTTP 403). Peniruan identitas merek: Google; Jenis penipuan: Impersonation. Ringkasan bukti: VirusTotal 3/91 (Fortinet, Gridinsoft, SOCRadar); Spamhaus DBL_PHISH; cloaking observed; PhishDestroy score 65/100. Registrar: NiceNIC.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
This domain, trontx.net, is flagged as an active brand impersonation threat targeting Google. Analysis indicates it operates as a phishing site designed to deceive users into divulging sensitive credentials by mimicking the legitimate Google interface. The domain is currently active and presents an elevated risk level due to its sophisticated infrastructure and targeted impersonation tactics. Infrastructure analysis reveals the domain was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED on June 24, 2026, and resolves to the IP address 172.67.151.192. Despite its deceptive appearance, only 1 of 95 security vendors on VirusTotal has flagged this domain, suggesting either evasion techniques or recent activation. The site employs a Google Trust Services SSL certificate, further enhancing its legitimacy facade, and advertises technologies such as Google Web Server, HSTS, and HTTP/3. The page title explicitly displays 'Google,' reinforcing its impersonation of the targeted brand. Current status confirms the domain remains operational, with no evidence of takedown or mitigation at this time. Organizations and users are advised to block the domain and its associated IP address (172.67.151.192) at the network level. Security teams should monitor for indicators of compromise, including unusual authentication attempts or unauthorized access originating from interactions with this domain. End-users should be educated on recognizing brand impersonation tactics, particularly those leveraging SSL certificates and familiar page titles to establish false trust. Proactive measures, such as implementing domain-based email filtering and enforcing multi-factor authentication, are recommended to mitigate potential credential theft risks.
Intelijen Keamanan Jaringan Registrar context
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-08 02:39:07 UTC
Teknologi · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Keyakinan 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Keyakinan 100%Analisis VirusTotal
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive