# lordarena-web.pages.dev — SUSPICIOUS > lordarena-web.pages.dev operates as a crypto drainer mimicking gaming sites. Verify URLs via PhishDestroy to protect funds. VT: 0/95 detections. ## Summary PhishDestroy identifies lordarena-web.pages.dev as an active crypto drainer phishing domain engaged in illicit cryptocurrency fund extraction through deceptive gaming portal impersonations. The domain leverages Cloudflare Pages to host a malicious landing page designed to trick users into connecting crypto wallets, triggering unauthorized token transfers via embedded drainer scripts. This represents an immediate threat to digital asset holders interacting with gaming-related services, particularly those unfamiliar with the warning signs of crypto theft infrastructure. Users should refrain from clicking links or connecting wallets to this domain under any circumstances. This domain exhibits several technical indicators that warrant under-investigation status despite current lack of antivirus detection. Registered through Cloudflare's infrastructure, it resolves to IP address 172.66.44.165 and operates under a Google Trust Services SSL certificate. VirusTotal analysis currently shows 0 detections out of 95 scanning engines (0/95), indicating minimal signature-based detection while remaining active. There is no evidence of inclusion on major threat intelligence platforms at this time, though the seed identifier (6c73ee) correlates with emerging crypto drainer campaigns. The site's recent creation through Cloudflare's Pages service provides a mechanism for rapid deployment while obfuscating true ownership details, a common tactic among crypto theft operations. Mitigation requires immediate domain blocking and user education regarding crypto wallet connection risks. Block network traffic to 172.66.44.165 at organizational firewalls while adding the domain to DNS sinkholes. Users should verify any gaming-related crypto wallet connection requests through PhishDestroy's URL validation tool. Enable wallet transaction simulation features where available to preview outgoing transfers before confirmation. This domain's lack of detections highlights the importance of behavioral analysis over signature-based detection in crypto theft prevention. Report any related wallet activity to incident response teams immediately, including transaction hashes and connected wallet addresses for potential fund recovery attempts. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registrar: Cloudflare, Inc. - IP: 172.66.44.165 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/33f5b00a-e247-44b0-8ffc-6947931fac75 - PhishDestroy: https://phishdestroy.io/domain/lordarena-web.pages.dev/ - LLM endpoint: https://phishdestroy.io/domain/lordarena-web.pages.dev/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/lordarena-web.pages.dev/ Last updated: 2026-03-25