MALICIOUS — HIGH
Verificação de phishing e segurança de tronyields.com
tronyields[.]
Analysis of tronyields.com shows the domain is actively used for phishing and remains under investigation as of the report date, 5 August 2026.
- VirusTotal
- 2/91
- Blocklists
- No stored match
- Disponibilidade
- Último ativo conhecido · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
tronyields.com — Último ativo conhecido (HTTP 200). Representação da marca: Across; Tipo de golpe: Crypto Drainer. Resumo das evidências: VirusTotal 2/91 (Forcepoint ThreatSeeker, SOCRadar); PhishDestroy score 66/100. Registrador: Fewmoretaps OU d/b/a T….
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Evidence Analysis
Analysis of tronyields.com shows the domain is actively used for phishing and remains under investigation as of the report date, 5 August 2026. The domain was registered on 31 July 2026 through Fewmoretaps OU d/b/a Trustname.com and is served by Cloudflare nameservers harlan.ns.cloudflare.com and jill.ns.cloudflare.com. DNS resolution points to IP address 104.21.56.144, a Cloudflare edge node that often masks the true hosting location.
The site has been flagged by the PhishDestroy blocklist and appears on one additional security blocklist, indicating that at least one independent sinkhole is already denying access. VirusTotal reports that the domain was scanned by 91 vendors with no detections; however, the absence of flagged artifacts does not constitute a safety assurance and should be treated as inconclusive. No public evidence of SSL certificate details, HTTP response codes, Safe Browsing status, OTX mentions, or page title has been disclosed, leaving the exact content and credential‑capture mechanisms unverified.
Defenders should proactively block DNS resolution to tronyields.com and the associated IP 104.21.56.144 across outbound filters, enforce strict email authentication to reject messages that reference the domain, and monitor network logs for any attempted connections to the Cloudflare edge node. Continuous re‑scanning with multi‑vendor sandboxes is recommended to capture any later payload drops or command‑and‑control activity. Given the recent registration date and the lack of additional public intelligence, the domain should be classified as a high‑confidence phishing indicator until further forensic detail becomes available.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Cobertura dos dados12 recorded checks
Inteligência de segurança de rede Registrar context
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologias · 4 identified
Modernizr is a JavaScript library that detects the features available in a user's browser.
modernizr.com 100% de confiançaCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% de confiançaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% de confiançaAnálise do VirusTotal
Evidências arquivadas
Evidências e relatórios externosIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.