Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
tronnokyc[.]org
“Tron No KYC — Swap TRX Instantly Without Registration | TronNoKYC.org”
Kanıt özeti
This domain, tronnokyc.org, is flagged as a generic_phishing site targeting cryptocurrency users under the guise of a TRX swap service. The page title, "Tron No KYC — Swap TRX Instantly Without Registration | TronNoKYC.org," suggests a fraudulent platform offering instant TRX swaps without identity verification, a common tactic to lure victims into draining wallets or disclosing private keys. No known drainer kit signatures have been confirmed, but the domain mimics legitimate no-KYC swap services to exploit user trust in decentralized finance (DeFi) platforms.
Infrastructure analysis reveals the following technical indicators: VirusTotal detection score of 0/95, indicating no antivirus engines currently flag the domain as malicious. The domain was registered on March 02, 2026, through July Name Limited, a registrar frequently associated with low-reputation domains. It resolves to the IP address 154.219.137.113, hosted in Hong Kong under AS134548 (DXTL Tseung Kwan O Service). The SSL certificate is issued by TrustAsia Technologies, Inc. via LiteSSL RSA CA 2025, providing a false sense of security. As of the latest data, the domain appears on 1 security blocklist and is blocked by PhishDestroy, though Google Safe Browsing (GSB) has not yet listed it.
The domain remains active, with no takedown or sinkholing observed. Response actions by security vendors are limited, as evidenced by the 0/95 VirusTotal score and single blocklist entry. The remaining risk is elevated due to the domain’s continued operation, lack of widespread detection, and targeting of cryptocurrency users. Users are advised to avoid interacting with the domain, verify swap services through official channels, and monitor wallet addresses for unauthorized transactions. Security teams should update blocklists to include this domain and its associated IP, while monitoring for related infrastructure or similar phishing campaigns impersonating no-KYC crypto services.
Gönderilen kanıt anlık görüntüsü
- Gönderildi
- Kayıt defteri kayıtları
- 1
- Vaka kimliği
PD-20260529-6F130D- PDF belgesi
- PDF kanıtı
Kanıtın tam metni
Section 3.1 of AUP: The domain tronnokyc.org is engaged in phishing activities, which are explicitly prohibited under your Acceptable Use Policy.
Section 5.2 of TOS: The registrar reserves the right to suspend or terminate services for any domain involved in illegal activities, including fraud and deception, which applies to this case.
Applicable Laws (CN):
Cybersecurity Law of the People's Republic of China: Prohibits unauthorized access to computer systems and data, which encompasses phishing schemes.
Criminal Law of the People's Republic of China (Article 285): Addresses fraud, including online fraud, which is relevant to the activities associated with this domain.
Regulatory Note: Failure to take immediate action against this domain may result in regulatory scrutiny and potential liability under applicable laws. Non-compliance could expose your organization to legal repercussions.
Data Coverage
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 13.08.2026
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler
10 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of tronnokyc.org · checked May 29, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin