Highscore 46 · flagged Monday, September 28, 2026

amlcrypto.lol

Appeared in the .lol zone on Monday, September 28, 2026; by the end of that day the census found redirects elsewhere. Full domain report

Signals, not verdicts. A domain appears here because heuristics matched its name, its infrastructure or the page it served on its first day. Where a model has looked at it, that is shown as an opinion with a confidence, not as a finding. Nothing on this page says a site is malicious. Read the evidence and decide for yourself.

Own one of these names and think the listing is wrong? Tell us and a person will look.

What matched

TLD with a high abuse rate
matched: lol
+8
brand in page title, not in the name
matched: google
+20
form on a brand-styled page
matched: has_form
+18
Registrar
Web Commerce Communications Limited dba WebNic.cc
Nameserver provider
Nameservers
paige.ns.cloudflare.com, thaddeus.ns.cloudflare.com
First-day state
redirects elsewhere
HTTP status
200
Page title
Google
Has a form
yes
Brand echoed
—

Model opinions

First passsuspiciousconfidence 72%· claude-haiku-4-5

The domain 'amlcrypto.lol' uses a suspicious TLD (.lol) and a brand-unrelated name (AML + crypto) that redirects to Google's legitimate homepage. While the redirect itself is benign, the combination of a cryptocurrency-adjacent name with unknown nameservers and deliberate redirection to Google suggests potential setup for credential harvesting or social engineering—the domain may later be modified to host a phishing page, or the redirect may be a placeholder. The current redirect to Google.com i

A model looked at the screenshot and page text and wrote what it thought. It can be wrong, and it is not a finding.

Same data as JSON: /api/zone/domain/amlcrypto.lol. This page is not indexed by search engines and does not link to the site it describes.