# claim.usdai.click — SUSPICIOUS > claim.usdai.click is a live crypto drainer impersonating USDai. Flagged by 1 of 95 VirusTotal vendors, verify and report on PhishDestroy immediately. ## Summary PhishDestroy identifies claim.usdai.click as an active crypto drainer domain currently deployed in phishing campaigns. The domain mimics legitimate USDai services to deceive users into connecting crypto wallets and authorizing malicious transactions. This infrastructure is categorized as elevated risk due to its operational status and targeting of cryptocurrency holders seeking USDai-related services. This domain resolves to IP 188.114.97.3 and was registered through Dynadot, LLC on April 05, 2026. It holds a valid SSL certificate issued by Let's Encrypt, increasing its perceived legitimacy. Security analysis conducted via VirusTotal reveals that 1 out of 95 participating vendors flagged this domain as malicious. No additional blocklist data was available at the time of assessment. The domain’s recent creation date and low detection rate suggest a newly launched campaign designed to evade early-stage detection mechanisms. The domain remains active as of the latest analysis. Users are strongly advised to avoid interacting with claim.usdai.click or any associated links and to verify the legitimacy of any USDai-related website through trusted channels. Immediate reporting to PhishDestroy is recommended to support ongoing threat intelligence efforts. Cryptocurrency users should exercise heightened caution when prompted to connect wallets or input private keys, and enable multi-factor authentication on all wallet and exchange accounts. Network defenders should consider blocking the domain at DNS and firewall levels based on the provided indicators. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-04-05 22:01:04 - Registrar: Dynadot, LLC - IP: 188.114.97.3 ## Detection Status - VirusTotal: 1 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/domains/claim.usdai.click - PhishDestroy: https://phishdestroy.io/domain/claim.usdai.click/ - LLM endpoint: https://phishdestroy.io/domain/claim.usdai.click/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/claim.usdai.click/ Last updated: 2026-04-07