# phantom110.online — MALICIOUS — Crypto Drainer (Solana Drainer) > Phantom110.online is a Solana crypto drainer impersonating Phantom. Created March 09, 2026, it has 0/95 VirusTotal detections and is blocked by MetaMask. ## Summary Phantom110.online is a high-risk domain designed to steal cryptocurrency from unsuspecting users by impersonating Phantom, a legitimate wallet provider. This site operates as a Solana Drainer, a type of malicious tool that drains funds from connected wallets without permission. When users visit, the site tricks them into connecting their wallets under false pretenses, such as fake login prompts or fraudulent airdrop claims, leading to irreversible asset loss. PhishDestroy identifies phantom110.online as an active threat due to its association with crypto drainer activity. The domain was registered on March 09, 2026, through NAMECHEAP INC and currently shows 0 out of 95 VirusTotal detections, meaning mainstream security tools have not yet flagged it. It resolves to IP 89.168.119.168, uses a Let’s Encrypt SSL certificate, and is already blocked by MetaMask and SEAL security systems. Additionally, it appears on 2 security blocklists, further confirming its malicious nature. If you visited phantom110.online, take immediate action to protect your assets. Disconnect the site from your wallet immediately using your wallet’s interface. Do not interact with any prompts or transactions initiated by the site. Run a full scan with a trusted antivirus tool and consider revoking any suspicious wallet permissions via tools like Phantom’s built-in security features or Etherscan for Ethereum-based wallets. Report the domain to PhishDestroy to help prevent others from falling victim to this drainer scheme. ## Threat Details - Verdict: MALICIOUS — Crypto Drainer (Solana Drainer) - Site status: unknown (HTTP ?) - Drainer type: Solana Drainer - Target brand: Phantom ## Domain Intelligence - Registered: 2026-03-09 21:04:55 - Registrar: NAMECHEAP INC - IP: 89.168.119.168 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 2 hits Lists: ["MetaMask", "SEAL"] ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/domains/phantom110.online - PhishDestroy: https://phishdestroy.io/domain/phantom110.online/ - LLM endpoint: https://phishdestroy.io/domain/phantom110.online/llm.txt ## If You Visited This Site 1. Revoke all token approvals immediately (revoke.cash / unrekt.net) 2. Move remaining funds to a new wallet 3. Do not interact with any transactions from this site 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/phantom110.online/ Last updated: 2026-04-08