# dblarpdwbr.top — MALICIOUS > dblarpdwbr.top is a crypto drainer hosting active phishing pages. VirusTotal flags 13/95 vendors. Avoid this domain to protect crypto assets. ## Summary PhishDestroy identifies dblarpdwbr.top as an active crypto drainer domain designed to steal cryptocurrency from unsuspecting users. This domain leverages deceptive web content to trick victims into connecting wallets or entering seed phrases, enabling immediate fund extraction. Security researchers have observed malicious JavaScript payloads embedded in the site designed to monitor clipboard activity for crypto wallet addresses, replacing them with attacker-controlled addresses in real time. Users who interact with this domain risk irreversible financial losses without recourse. This domain was flagged by 13 out of 95 VirusTotal security vendors within the first 24 hours of detection. The domain was registered on January 15, 2026, through Gname.com Pte. Ltd., a registrar frequently associated with malicious domain registrations. The infrastructure hosting dblarpdwbr.top resolves to IP address 47.253.178.175 and utilizes a Let's Encrypt SSL certificate to appear legitimate. Independent threat intelligence feeds have added this domain to active blocklists, confirming its malicious intent. If you visited dblarpdwbr.top or entered any information on the site, disconnect your wallet immediately and revoke any wallet connections through your wallet provider's interface. Do not interact with any transaction prompts or seed phrase requests that originated from this domain. Report the incident to your wallet provider and consider transferring remaining funds to a newly generated wallet address. Enable hardware wallet authentication and transaction confirmation features on all crypto platforms. Monitor wallet activity closely for unauthorized transactions. ## Threat Details - Verdict: MALICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-01-15 02:32:38 - Registrar: Gname.com Pte. Ltd. - IP: 47.253.178.175 ## Detection Status - VirusTotal: 13 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/b1b49c71-c4fe-4c34-826c-74e4867a4f04 - PhishDestroy: https://phishdestroy.io/domain/dblarpdwbr.top/ - LLM endpoint: https://phishdestroy.io/domain/dblarpdwbr.top/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/dblarpdwbr.top/ Last updated: 2026-03-28