trovynbit[.]net
Сводка доказательств
Analysis as of July 24 2026 indicates that the domain trovynbit.net was registered on 1 December 2025 through PDR Ltd. d/b/a PublicDomainRegistry.com and is currently resolved to the Cloudflare address 104.21.2.221 (AS13335, United States). The site is protected by an SSL certificate identified as WE1, but the certificate alone does not mitigate the observed malicious behavior. The domain appears on three independent security blocklists and has been explicitly blocked by the PhishDestroy, MetaMask, and SEAL filtering services. VirusTotal records show that 15 of 93 scanning engines have flagged the domain, reinforcing the suspicion of malicious activity.
Gridinsoft assigns a trust score of 0 / 100, indicating a lack of credibility. The threat classification supplied is generic phishing with a high‑risk rating, and the domain is presently taken offline, which limits immediate exposure but does not remove the underlying infrastructure. No page title or additional content metadata have been disclosed, so the specific lure or targeted brand cannot be confirmed.
Defenders should continue to block the IP address 104.21.2.221 and the domain itself at DNS and proxy layers, add the domain to internal blocklists, and monitor for any re‑registration or use of similar sub‑domains. Ongoing observation of the associated ASN (13335) for new phishing‑related entries is advised, as Cloudflare hosting is commonly abused for fast‑flux operations. The combination of multi‑vendor detections, zero trust score, and blocklist listings provides strong evidence that trovynbit.net should be treated as a confirmed phishing infrastructure.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
8 внешних источников под наблюдением Совпадений нет
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Криминалистическая аналитика
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание