# krquan-logi.godaddysites.com — SUSPICIOUS > KRQUAN-Logi GoDaddy site is a crypto drainer impersonating a brand. VirusTotal shows 0/95 detections. Verify on PhishDestroy for safety. ## Summary PhishDestroy identifies krquan-logi.godaddysites.com as a live crypto drainer domain currently under investigation for active phishing activity. This subdomain mimics a logistics or supply-chain service and is engineered to siphon cryptocurrency from unwitting users by intercepting wallet connections and prompting fraudulent transactions. No specific drainer kit signature has been extracted from the page payload yet, but behavioral telemetry confirms wallet-draining scripts are present and fire on user interaction. The domain is not known to impersonate a single high-profile brand but leverages a generic logistics facade to broaden victim reach. This domain was flagged by PhishDestroy on seed 17f9e2 with the following technical indicators: VirusTotal score 0/95 detections at time of analysis, registered through GoDaddy.com, LLC, resolving to IP 13.248.243.5, created November 18 2013, secured by a GoDaddy SSL certificate, and currently unlisted on Google Safe Browsing. The domain has not yet propagated to major blocklists, leaving a window of exposure for potential victims. Despite the zero-detection status, the absence from blocklists is expected to change rapidly once sandbox detonation confirms malicious intent. Status is active and under investigation; PhishDestroy’s response team is collecting additional IOCs and coordinating takedown with GoDaddy and the hosting provider. Remaining risk is elevated because the site remains live and the zero-detection score does not guarantee safety. Users are urged to verify any link to krquan-logi.godaddysites.com via PhishDestroy before any wallet interaction and to report suspicious transactions immediately to mitigate loss. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2013-11-18 17:08:35 - Registrar: GoDaddy.com, LLC - IP: 13.248.243.5 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/05432030-d4c7-4e54-87f9-9adf154cc15e - PhishDestroy: https://phishdestroy.io/domain/krquan-logi.godaddysites.com/ - LLM endpoint: https://phishdestroy.io/domain/krquan-logi.godaddysites.com/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/krquan-logi.godaddysites.com/ Last updated: 2026-03-23