tronlinkhub[.]com
Проверка домена tronlinkhub.com на фишинг и безопасность
“TronLink Hub — Safe TRON (TRC20) Wallet Guide, Best Practices & Resources”
tronlinkhub.com — Контент недоступен (HTTP 502). Олицетворение бренда: Across; Тип мошенничества: Wallet/seed Phishing. Сводка доказательств: VirusTotal 4/91 (alphaMountain.ai, Chong Lua Dao, CRDF, Gridinsoft); URLQuery 3 alerts; PhishDestroy score 70/100. Регистратор: CNOBIN INFORMATION TEC….
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of tronlinkhub.com indicates a recent brand‑impersonation operation focused on wallet and seed credential harvesting. The domain was registered on 21 February 2026 through CNOBIN INFORMATION TECHNOLOGY LIMITED and is currently taken offline. It resolves to IP 190.14.39.5, which is allocated to Offshore Racks S.A in Pennsylvania (AS52469). Both authoritative name servers, ns1.offshoreracks.com and ns2.offshoreracks.com, belong to the same hosting provider, suggesting a deliberately outsourced infrastructure.
No TLS certificate is present, meaning the site served only over plain HTTP, and the server stack was identified as LiteSpeed with HTTP/3 support. The page title returned by the host reads "TronLink Hub — Safe TRON (TRC20) Wallet Guide, Best Practices & Resources," aligning with the reported scam type of wallet/seed phishing. VirusTotal scans show five of ninety‑three security vendors flagging the domain, and PhishDestroy has already added it to its blocklist. The domain also appears on a single external blocklist and received a Gridinsoft trust score of zero out of one hundred, reinforcing its malicious classification.
Defenders should immediately block both the domain and its associated IP address at network perimeters and proxy layers. Because the hosting provider and name server pattern match other known phishing infrastructure, security teams should consider adding offshore‑racks.com subdomains to their watchlists. Continuous monitoring of newly‑registered domains using the same registrar or hosting ASN is advised, as adversaries may reactivate the site or clone its content under a new label. Endpoint protection should be updated to recognize the five vendor detections linked to this domain, and threat‑intel feeds should be refreshed to capture any future referrals to the same IP range or name server pair.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 2 identified
HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
PD-20260107-7D2F3E Recipient: abuse@ordertld.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание