# trendbet-hizligir.vip — SUSPICIOUS > trendbet-hizligir.vip is a crypto drainer impersonating Trendbet to steal user funds. VT score 0/95, registered March 2026. ## Summary PhishDestroy identifies trendbet-hizligir.vip as a crypto drainer impersonating the Trendbet trading platform, designed to trick users into connecting malicious wallets and drain their crypto assets. The domain was registered on March 22, 2026, through Dynadot LLC and resolves to IP 188.114.96.3. While the site uses a Let's Encrypt SSL certificate to appear legitimate, its technical setup lacks robust infrastructure, suggesting a low-cost, short-lived campaign targeting cryptocurrency users. This domain exhibits several red flags consistent with crypto drainers: a VirusTotal scan shows 0/95 detections, indicating no antivirus or security service has flagged it yet. The domain's recent creation date and generic registrar (Dynadot LLC) further support its suspicious nature. It remains unblocked by Google Safe Browsing (GSB) and has not been widely listed on major threat intelligence feeds, increasing the risk of exposure to unaware users. The use of IP 188.114.96.3, part of Cloudflare's infrastructure, may be an attempt to evade detection or geoblocking. As of now, trendbet-hizligir.vip remains active and unblocked, posing an immediate threat to cryptocurrency traders who may mistake it for the legitimate Trendbet platform. Users are strongly advised to verify the domain using PhishDestroy or similar threat intelligence tools before engaging. The lack of detections and short domain age suggest this campaign is still in early stages, but the risk of financial loss is high. Immediate action such as domain blocking, IP blacklisting, and public reporting can help mitigate further damage while threat researchers continue monitoring this site. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-03-22 12:25:15 - Registrar: DYNADOT LLC - IP: 188.114.96.3 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/8514de69-15b8-4c4e-97a6-56b999b2b279 - PhishDestroy: https://phishdestroy.io/domain/trendbet-hizligir.vip/ - LLM endpoint: https://phishdestroy.io/domain/trendbet-hizligir.vip/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/trendbet-hizligir.vip/ Last updated: 2026-03-23