# alienxbox-l2.pages.dev — SUSPICIOUS > alienxbox-l2.pages.dev identified as a crypto drainer phishing site, currently flagged by 2 of 95 VirusTotal vendors. ## Summary PhishDestroy identifies alienxbox-l2.pages.dev as an active crypto drainer phishing domain, operating under an elevated risk profile. Current telemetry confirms this infrastructure is engaged in malicious activities targeting cryptocurrency users through deceptive asset transfer schemes. The domain maintains a fraudulent facade designed to trick victims into authorizing unauthorized transactions to attacker-controlled wallets. This domain was flagged by 2 of 95 VirusTotal security vendors at the time of analysis. Registration occurred via Cloudflare, Inc., with the infrastructure resolving to IP address 188.114.96.3. The domain leverages a Google Trust Services SSL certificate to enhance perceived legitimacy, despite its malicious purpose. While creation date and blocklist counts remain unverified in available intelligence, trust scores indicate compromised integrity across multiple threat feeds. Users are strongly advised to avoid interaction with alienxbox-l2.pages.dev due to confirmed crypto drainer functionality. Security teams should implement network-level blocks against IP 188.114.96.3 and monitor for associated wallet addresses. Immediate scanning of endpoints for indicators of compromise is recommended, with particular attention to unauthorized crypto wallet connection requests. Report this domain via PhishDestroy’s submission portal to enhance collective threat intelligence against crypto-focused phishing campaigns. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registrar: Cloudflare, Inc. - IP: 188.114.96.3 ## Detection Status - VirusTotal: 2 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/0dd5fe97-09ad-41a9-8407-c05ff2eb5462 - PhishDestroy: https://phishdestroy.io/domain/alienxbox-l2.pages.dev/ - LLM endpoint: https://phishdestroy.io/domain/alienxbox-l2.pages.dev/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/alienxbox-l2.pages.dev/ Last updated: 2026-03-23