# meteora-claim.top — SUSPICIOUS > Metora-Claim.top is a crypto drainer domain active since March 22. Zero detections on VirusTotal warn users of credential theft risks. Block it immediately. ## Summary PhishDestroy identifies meteora-claim.top as a live crypto drainer domain under active investigation by fraud detection teams as of seed 452719. This domain poses a HIGH but evolving risk, specifically acting as a cryptocurrency drainer targeting unsuspecting users. Key data points confirm its malicious intent: it resolves to IP 188.114.97.3 and currently shows 0/95 detections on VirusTotal, indicating minimal blocklist coverage. Registered through PDR Ltd. d/b/a PublicDomainRegistry.com on March 22, 2026, the domain utilizes a Let's Encrypt SSL certificate to appear legitimate, despite its recent creation. Its low detection rate and fresh registration timeline suggest a recently activated threat that has not yet been widely flagged by security vendors. The domain’s behavior aligns with crypto drainer tactics, where attackers deploy fraudulent withdrawal or claim links—often mimicking legitimate platforms—to silently siphon cryptocurrency from victims' wallets. Given the 0/95 VirusTotal score, this domain should be treated as untrusted regardless of its appearance. Users interacting with any page on meteora-claim.top risk unauthorized wallet access, token theft, or credential harvesting via fake OAuth flows. Mitigation requires immediate network and browser-level blocking: add the IP 188.114.97.3 and domain to firewall/hosts file deny lists, disable JavaScript on the site if accessed accidentally, and revoke any wallet connections prompted by the domain. Enterprises should update threat intelligence feeds to flag the domain, IP, and SSL certificate fingerprint for proactive blocking. Exercise extreme caution and avoid wallet interactions entirely. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-03-22 08:27:07 - Registrar: PDR Ltd. d/b/a PublicDomainRegistry.com - IP: 188.114.97.3 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/5151a4ee-3d51-45d2-93e9-42df21d2146a - PhishDestroy: https://phishdestroy.io/domain/meteora-claim.top/ - LLM endpoint: https://phishdestroy.io/domain/meteora-claim.top/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/meteora-claim.top/ Last updated: 2026-03-22