# moukaru.degenlabs.lol — SUSPICIOUS > Caution: moukaru.degenlabs.lol is an active crypto drainer domain. Avoid interactions to protect your digital assets and wallet security. ## Summary PhishDestroy identifies moukaru.degenlabs.lol as a medium-risk crypto drainer domain currently active and targeting cryptocurrency users. This domain poses a significant threat by attempting to illicitly access or drain users’ crypto wallets under the guise of Moukarucoin, increasing the risk of financial loss. The domain was registered recently on February 21, 2026, through Porkbun LLC and resolves to the IP address 216.198.79.1. It has been flagged on two security blocklists and detected by three security vendors on VirusTotal, indicating ongoing malicious activity. The presence on multiple blocklists and association with crypto draining techniques confirm the domain’s intent to compromise wallet credentials or private keys. Users are strongly advised to avoid visiting this site or interacting with any related links or services. Maintaining updated security software, using hardware wallets, and employing multi-factor authentication can reduce exposure. Reporting suspicious domains like moukaru.degenlabs.lol to security platforms further helps protect the broader crypto community. ## Threat Details - Verdict: SUSPICIOUS - Site status: dead (HTTP 403) - Page title: Moukaru (Moukarucoin) ## Domain Intelligence - Registered: 2026-02-21 07:01:08 - Expires: 2027-01-13 00:00:00 - Registrar: Porkbun LLC - Country: US - IP: 216.198.79.1 - IP Country: US - IP City: Walnut - IP Org: AS16509 Amazon.com, Inc. - Nameservers: curitiba.ns.porkbun.com fortaleza.ns.porkbun.com maceio.ns.porkbun.com salvador.ns.porkbun.com - SSL Issuer: none ## Detection Status - VirusTotal: 3 vendors flagged Vendors: ["Gridinsoft", "Seclookup", "SOCRadar"] - Google Safe Browsing: clean - Blocklists: 2 hits Lists: ["PhishDestroy", "ScamSniffer"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019bd91f-a046-7278-866c-84e874155298.png - Cloudflare Radar: https://radar.cloudflare.com/scan/7f81d1b0-4b13-4a0d-8801-dcc0aed984f0 - Wayback Machine: https://web.archive.org/web/https://moukaru.degenlabs.lol - PhishDestroy: https://phishdestroy.io/domain/moukaru.degenlabs.lol/ - LLM endpoint: https://phishdestroy.io/domain/moukaru.degenlabs.lol/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/moukaru.degenlabs.lol/ Last updated: 2026-03-19