# royalcorps.top — SUSPICIOUS > PhishDestroy identifies royalcorps.top as a crypto drainer phishing domain with 0/95 VirusTotal detections. Avoid this active scam now. ## Summary PhishDestroy identifies royalcorps.top as a crypto drainer scam currently under investigation for active phishing operations targeting cryptocurrency users. This domain was flagged for its high-risk potential to deploy malicious scripts that drain digital assets from unsuspecting victims' wallets upon interaction. The domain resolves to IP 198.251.84.200, which hosts a recently registered domain with no established reputation, making it a prime candidate for exploitation in fraudulent schemes. Security researchers recommend treating this domain with extreme caution due to its active status and lack of detection on VirusTotal. This domain exhibits multiple red flags consistent with cryptocurrency drainer campaigns, including a registration date of November 12, 2025—an unusually recent creation indicative of opportunistic scamming. Registered through Spaceship, Inc., the domain employs a Let's Encrypt SSL certificate, a tactic often used to lend false legitimacy to fraudulent sites. Most critically, VirusTotal reports 0 detections out of 95 scanners, suggesting this domain has evaded initial detection despite its malicious potential. Given its active status and the absence of blocklist entries, this domain poses a significant risk to users engaging with crypto-related services. Users who visited or interacted with royalcorps.top should immediately disconnect from the site and avoid entering any wallet credentials or making transactions. Scan your device for malware using reputable antivirus tools, as crypto drainers often deploy stealthy scripts that persist in the background. If you provided wallet details or private keys, revoke permissions and transfer remaining funds to a new wallet immediately. Report the domain to PhishDestroy and your local cybersecurity authority to aid in ongoing investigations. Always verify URLs and use hardware wallets or security extensions to mitigate risks associated with crypto drainer phishing domains. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2025-11-12 19:03:16 - Registrar: Spaceship, Inc. - IP: 198.251.84.200 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/93832119-a58b-4776-bec2-36bdeace19bd - PhishDestroy: https://phishdestroy.io/domain/royalcorps.top/ - LLM endpoint: https://phishdestroy.io/domain/royalcorps.top/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/royalcorps.top/ Last updated: 2026-03-23