tr00113[.]cc
Verifica phishing e sicurezza per tr00113.cc
“USDT 支付中心”
tr00113.cc — Contenuto non disponibile (HTTP 503). Riepilogo delle prove: VT 6/91 (alphaMountain.ai, CRDF, CyRadar, Forcepoint ThreatSeeker, Gridinsoft); URLQuery 0; URLScan no malicious verdict; GSB no flag; BL 0; PD 78/100. Registrar: Gname.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
PhishDestroy first observed tr00113.cc on Jan 24, 2026. A positive finding was recorded by VirusTotal. Evidence score: 78/100.
VirusTotal recorded 6 detections among 91 engines: alphaMountain.ai, CRDF, CyRadar, Forcepoint ThreatSeeker, Gridinsoft, Sophos on Jul 26, 2026 at 03:35 UTC. The external blocklist snapshot contained no matches on Aug 7, 2026 at 10:20 UTC. URLQuery recorded no positive detection on Jan 25, 2026 at 02:43 UTC. Google Safe Browsing returned no flag on Mar 2, 2026 at 20:27 UTC. URLScan completed without a malicious verdict on Jan 24, 2026 at 18:06 UTC.
HTTP 503 was recorded on Aug 7, 2026 at 02:13 UTC; content was unavailable. Registration records list Gname.com Pte. Ltd. as the registrar. At collection time, the domain resolved to 192.252.182.16. Captured page title: “USDT 支付中心”. DOM analysis completed on Jul 10, 2026 at 18:21 UTC; stored DOM score 78/100. IoC extraction completed on Jul 29, 2026 at 02:38 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators.
Stored full analysis24/07/2026
Analysis of tr00113.cc, created on February 21, 2026, indicates that the domain is actively hosting a generic phishing page titled "USDT 支付中心". The domain resolves to the IPv4 address 192.252.182.16, which belongs to AS152194 operated by CTG Server Limited and is geolocated in Hong Kong. DNS resolution is served by a12.share-dns.com and b12.share-dns.net, and the site presents a valid Let’s Encrypt certificate (R13) with HTTPS enabled, accompanied by HTTP Strict Transport Security (HSTS). The web server is identified as Nginx and the page includes resources from the jsDelivr CDN.
Gridinsoft assigns a trust score of 0 out of 100, reflecting a high likelihood of malicious activity. The domain was registered through Gname.com Pte. Ltd. and is currently listed on one security blocklist; PhishDestroy has already blocked the domain. VirusTotal analysis shows that 7 of 93 scanned security vendors flag the domain, corroborating the suspicion. The HTTP response returns status code 200, indicating that the content is being served without redirection or error.
While the page title suggests a focus on USDT payments, no additional content details are available from the intelligence feed. Uncertainties remain regarding the specific phishing kit or any victim interaction patterns, as no payload or credential capture mechanisms have been disclosed. Defenders should add the domain and its associated IP address to network‑level block lists, monitor DNS queries for the listed nameservers, and enforce TLS inspection to capture any malicious payloads delivered via the jsDelivr CDN. Continuous scanning with multi‑engine aggregators is recommended to capture any future changes in detection status.
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Tecnologie · 3 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Free public CDN for open-source projects, serving files from npm and GitHub.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Analisi di VirusTotal
Prove archiviate
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of tr00113.cc · checked Mar 2, 2026
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Informazioni su questo rapporto: tr00113.cc
Questo rapporto presenta le ultime prove archiviate disponibili per PhishDestroy. I timestamp della sorgente vengono mostrati ove disponibili; la disponibilità e i verdetti del fornitore possono cambiare dopo il ritiro.
Il sito acquisito mostrava il titolo della pagina “USDT 支付中心”.
Al momento di 07/08/2026, tr00113.cc ha ricevuto rilevamenti dai motori di sicurezza 6.
Se ritieni che questo elenco sia impreciso, presentare ricorso. Per conoscere la nostra metodologia, visita Pagina delle domande frequenti.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo