# aliabdaal.lol — SUSPICIOUS > aliabdaal.lol hosts a generic phishing crypto drainer with 0/95 VirusTotal detections. Avoid clicking links or entering data—verify domains before interaction. ## Summary PhishDestroy identifies aliabdaal.lol as an active generic phishing domain impersonating content creator Ali Abdaal, with indicators suggesting a crypto drainer payload. The threat level is currently under investigation but remains active and unmitigated by major security vendors. This domain was flagged with zero detections out of 95 VirusTotal engines, resolving to IP 172.67.209.202, and secured with a Let’s Encrypt SSL certificate. It was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED on April 04, 2026. No known blocklist entries or trust score data are currently associated with this indicator. Users should avoid clicking links from unsolicited messages or visiting the site directly. If exposed, do not connect wallets or enter credentials. Report the domain to hosting providers and block it at the network or DNS level. Monitor wallet transactions closely for unauthorized transfers and consider revoking any connected permissions. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-04-04 10:40:02 - Registrar: NICENIC INTERNATIONAL GROUP CO., LIMITED - IP: 172.67.209.202 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/domains/aliabdaal.lol - PhishDestroy: https://phishdestroy.io/domain/aliabdaal.lol/ - LLM endpoint: https://phishdestroy.io/domain/aliabdaal.lol/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/aliabdaal.lol/ Last updated: 2026-04-04