trc20connect[.]com
trc20connect.com のフィッシング・安全性チェック
“Mining Pool Connection”
trc20connect.com — コンテンツが利用できません (HTTP 502). 詐欺タイプ: Wallet/seed Phishing. 証拠の概要: VT 3/93 (Gridinsoft, SOCRadar, URLQuery); URLQuery 4 alerts; URLScan no malicious verdict; GSB no flag; BL 0; PD 65/100. レジストラ: Eranet International.
元のフォレンジック記録を保持するため、下の PhishDestroy AI 詳細分析は英語のままです。
PhishDestroy first observed trc20connect.com on Jan 26, 2026. The captured page title is “Mining Pool Connection”. Stored page analysis classifies the content as wallet/seed phishing. Current evidence score: 65/100 (high).
Positive findings are stored from 2 sources: VirusTotal and URLQuery. VirusTotal recorded 3 detections among 93 engines: Gridinsoft, SOCRadar, URLQuery on May 8, 2026 at 01:50 UTC. URLQuery recorded 4 threat-system alerts on Jan 26, 2026 at 11:53 UTC. Non-positive and contextual checks: The external blocklist snapshot contained no matches on Aug 7, 2026 at 22:20 UTC. Google Safe Browsing returned no flag on Mar 3, 2026 at 04:14 UTC. URLScan completed without a malicious verdict (score 0) on Jul 29, 2026 at 03:27 UTC.
HTTP 502 was recorded on Aug 7, 2026 at 01:26 UTC; content was unavailable. Registration records for the domain list Eranet International Limited as the registrar. At collection time, the hostname resolved to 172.67.151.106 on AS13335 (CLOUDFLARENET - Cloudflare, Inc., US). The IP and ASN identify shared Cloudflare edge infrastructure; the origin server is not established by this address. DOM analysis on Apr 23, 2026 at 07:21 UTC returned 5/100. The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and URLQuery.
The content indicators and 2 positive source findings support the current wallet/seed phishing classification.
ネットワークセキュリティインテリジェンス
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Nextron YARA rules | trc20connect.com/assets/index-te6_j_jh.js |
malware | Unique code from Jetriz, Swid & Jeniva of the Tetris framework |
| Nextron YARA rules | trc20connect.com/assets/code.js |
malware | Unique code from Jetriz, Swid & Jeniva of the Tetris framework |
| Nextron YARA rules | trc20connect.com/assets/index-bakr55ut.js |
malware | Unique code from Jetriz, Swid & Jeniva of the Tetris framework |
| DigiCert UltraDNS | tonapi.io |
malicious | Sinkholed |
脅威対応 Pipeline
公開ブロックリスト登録状況
保存済みキャプチャ
ドメイン・インテリジェンス
技術的な詳細DNS、SSL SAN、タイムスタンプ
ICANN OVERSIGHT
認定と RAA の背景
認定と RAA の背景
ICANNには支払いが済んだ。説明責任は届かなかった。
このgTLDでは、上記のレジストラはICANNとの契約に基づいて運営されています。ICANNは、登録、更新、移管に連動する年間手数料、変動手数料、および取引ベースの手数料を徴収します。
認定:収益化済み。説明責任:後ほどもう一度ご確認ください。
そして魔法が始まります。ICANNがRAA §3.18を書き、レジストラは自らの顧客基盤内の不正利用を自ら調査し、被害者は証拠を無償で提供する一方、各層は誰か別の者が動くのを待ちます。それで被害者が少しでも安全になった気がするなら、結構なことです――請求書は仕事を果たしたわけです。
VirusTotalによる分析
証拠および外部報告書
このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください