MALICIOUS — CRITICAL
tandtxpress[.]com
PhishDestroy identifies tandtxpress.com as a generic phishing site that poses a threat to users by impersonating a delivery service, aiming to deceive individuals into divulging sensitive information.
- VirusTotal
- 2/92
- Blocklists
- No stored match
- Доступність
- Останній відомий активний · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
tandtxpress.com — Останній відомий активний (HTTP 200). Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 2/92 (Fortinet, Gridinsoft); Spamhaus DBL_SPAM; PhishDestroy score 76/100. Реєстратор: TuringSign.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
PhishDestroy identifies tandtxpress.com as a generic phishing site that poses a threat to users by impersonating a delivery service, aiming to deceive individuals into divulging sensitive information. This domain was flagged due to its recent creation on May 13, 2026, and the fact that 2 out of 95 security vendors on VirusTotal have flagged it as malicious, indicating a potential risk to users. The domain is currently offline, but its history, including being registered through TuringSign Inc. d/b/a Cosmotown and having a Let's Encrypt SSL certificate, is being monitored.
The site's page title, 'T&T Express Delivery - Delivering at the right time every time - Yes, We Delivery ...', suggests an attempt to appear legitimate, but the presence of this domain on 1 security blocklist and its mention in 1 AlienVault OTX threat intelligence pulse raise concerns about its authenticity. With a risk level assessed as elevated, it is crucial for users to exercise caution.
If a user has visited tandtxpress.com, they should immediately verify the legitimacy of the site on PhishDestroy and take necessary precautions to secure their personal and financial information, considering the site's potential to facilitate phishing attacks, as indicated by the integration of technical indicators such as its IP resolution to 37.49.229.75 and the specifics of its SSL certificate.
Обсяг даних13 recorded checks
Сигнали безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.