trustydrugsstore[.]com
“Cheap Online Pharmacy - trustydrugsstore.com”
trustydrugsstore.com — Прикритий · доступний (HTTP 502). Уособлення бренду: Manta; Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 9/94 (alphaMountain.ai, CRDF, Emsisoft, Fortinet, Kaspersky); URLQuery 2 alerts; CF Radar malicious; cloaking observed; PhishDestroy score 78/100. Реєстратор: NiceNIC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies trustydrugsstore.com as an active counterfeit pharmacy phishing domain posing elevated risk to end users. This domain is not affiliated with any legitimate pharmaceutical retailer and is designed to deceive victims into purchasing counterfeit or unsafe medications while harvesting sensitive financial and personal data. The threat actor behind this infrastructure has established a rapidly deployed domain with clear malicious intent, as evidenced by its recent creation and immediate detection by multiple security vendors. This domain resolves to IP address 141.98.11.218 and was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED on April 07, 2025. According to VirusTotal analysis, 9 out of 95 security vendors have flagged this domain as malicious, indicating significant but not universal detection coverage at this time. The domain utilizes a Let's Encrypt SSL certificate to establish false trustworthiness, a common tactic among phishing operators to appear legitimate. The recent registration date (April 7, 2025) suggests this is a newly established campaign with potentially limited historical data available for analysis. As of the latest assessment, trustydrugsstore.com remains active and represents an elevated threat to users seeking pharmaceutical products online. The domain's use of NICENIC INTERNATIONAL GROUP CO., LIMITED as registrar and its hosting on IP 141.98.11.218 should be treated as indicators of compromise. Organizations and individuals are strongly advised to block this domain at the network perimeter and DNS level immediately. Users who may have accessed this domain should scan their devices for potential malware infections and review financial transactions for unauthorized activity. Security teams should monitor for connections to this IP address and consider it a high-confidence threat indicator. The Let's Encrypt certificate should not be considered a trust signal given the domain's malicious categorization.
Розвіддані з мережевої безпеки Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | trustydrugsstore.com |
malicious | Sinkholed |
| DNS4EU | trustydrugsstore.com |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-14 03:35:16 UTC
Технології · 4 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Plugin to detect and restore deprecated jQuery features.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of trustydrugsstore.com · checked Mar 27, 2026
Докази та зовнішні звіти
PD-20260327-82D517 Recipient: abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога