# slun1.cc — SUSPICIOUS > Investigating slun1.cc for crypto drainer phishing tactics with 0/95 VirusTotal detections. Immediate URL inspection advised. ## Summary PhishDestroy identifies slun1.cc as a live crypto drainer phishing domain currently under investigation. The site poses as a cryptocurrency service to trick users into connecting wallets and draining funds. Risk level remains under_investigation due to evolving threat intelligence and low detection rates. slun1.cc was registered on February 19, 2026 through NICENIC INTERNATIONAL GROUP CO., LIMITED, resolving to IP 188.114.97.3. The domain holds a valid Let’s Encrypt SSL certificate, indicating active HTTPS deployment. VirusTotal currently shows 0/95 detections, suggesting it has not yet been widely flagged by security vendors. No entries were found on major blocklists or threat intelligence feeds at the time of analysis. Users should avoid visiting slun1.cc or interacting with any linked pages. Never connect your cryptocurrency wallet to unknown platforms. If exposed, revoke any wallet connections immediately via your wallet’s connection manager and monitor for unauthorized transactions. Report the domain to your browser’s safe browsing tools or security software to help block future access. Exercise caution with any crypto-related links received via email, social media, or messaging apps. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-02-19 11:13:24 - Registrar: NICENIC INTERNATIONAL GROUP CO., LIMITED - IP: 188.114.97.3 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/660c3be9-9e2b-40b6-bbba-fec35f3fccd7 - PhishDestroy: https://phishdestroy.io/domain/slun1.cc/ - LLM endpoint: https://phishdestroy.io/domain/slun1.cc/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/slun1.cc/ Last updated: 2026-03-29