# claim-distortedcoin.fun — SUSPICIOUS > PhishDestroy identifies claim-distortedcoin.fun as an active crypto-drainer since March 13, 2026. Two security vendors on VirusTotal flag this threat. ## Summary PhishDestroy has identified claim-distortedcoin.fun as an active crypto-draining domain designed to steal cryptocurrency from unsuspecting users. This site masquerades as a legitimate claim portal but is engineered to intercept and divert digital assets to threat actor-controlled wallets. Visitors should treat this domain as hostile and avoid any interactions, including clicking links or entering sensitive information. This domain was flagged by PhishDestroy after VirusTotal confirmed 2 out of 95 security vendors detected malicious activity. Public records show the domain was registered on March 13, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com, and it resolves to IP address 188.114.97.3. Additional confirmation comes from ScamSniffer’s blocklist and one other security blocklist, reinforcing the elevated risk level associated with this threat. The use of a Let’s Encrypt SSL certificate suggests an attempt to appear legitimate, which is a common tactic among crypto-drainer operators. If you have visited claim-distortedcoin.fun, immediately disconnect from the internet, scan your device for malware, and review your cryptocurrency wallets for unauthorized transactions. Revoke any suspicious wallet connections and consider transferring remaining assets to a newly generated wallet. Report the incident to your wallet provider and relevant cybersecurity authorities. Stay vigilant: crypto-drainers often employ social engineering lures, so verify URLs and avoid clicking unsolicited links in emails or messages. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-03-13 05:32:08 - Registrar: PDR Ltd. d/b/a PublicDomainRegistry.com - IP: 188.114.97.3 ## Detection Status - VirusTotal: 2 vendors flagged - Google Safe Browsing: clean - Blocklists: 1 hits Lists: ["ScamSniffer"] ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/92f93376-11c1-4065-a2ea-e57a257ddfa1 - PhishDestroy: https://phishdestroy.io/domain/claim-distortedcoin.fun/ - LLM endpoint: https://phishdestroy.io/domain/claim-distortedcoin.fun/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/claim-distortedcoin.fun/ Last updated: 2026-03-24