# beingx13.github.io — MALICIOUS > beingx13.github.io is a crypto drainer phishing site flagged by 16/95 VirusTotal vendors. Avoid this GitHub-hosted scam targeting cryptocurrency users. ## Summary Is beingx13.github.io Safe? This GitHub Pages domain is actively hosting a cryptocurrency drainer scam designed to trick visitors into connecting their wallets and stealing digital assets. The site impersonates legitimate crypto services by leveraging GitHub's trusted infrastructure (beingx13.github.io) to appear credible while executing malicious JavaScript that drains connected wallets. Security researchers note this follows a pattern where threat actors abuse free hosting services to distribute wallet-draining scripts targeting users of popular blockchain networks. PhishDestroy identifies this domain as high-risk based on multiple threat intelligence sources. VirusTotal flags it with 16 out of 95 security vendors detecting malicious content. The domain was registered through GitHub, Inc. and currently resolves to IP 185.199.110.153. Google Safe Browsing categorizes it under SOCIAL_ENGINEERING, confirming active phishing behavior. Let's Encrypt provides its SSL certificate, further legitimizing its appearance to unsuspecting victims. If you visited beingx13.github.io: immediately disconnect your wallet from any suspicious sites, revoke any unauthorized permissions through your wallet interface, and scan your device for malware. Never enter seed phrases or connect wallets to unfamiliar domains, even if they appear on reputable hosting platforms. Report the domain to your antivirus provider and consider warning others in crypto communities. For future protection, use browser extensions that detect crypto drainer domains and verify URLs through official project channels before interacting. ## Threat Details - Verdict: MALICIOUS - Site status: alive (HTTP ?) ## Domain Intelligence - Registrar: GitHub, Inc. - IP: 185.199.110.153 ## Detection Status - VirusTotal: 16 vendors flagged - Google Safe Browsing: FLAGGED - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/e9a90e10-4065-4dc3-932d-d38f4689d06d - PhishDestroy: https://phishdestroy.io/domain/beingx13.github.io/ - LLM endpoint: https://phishdestroy.io/domain/beingx13.github.io/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/beingx13.github.io/ Last updated: 2026-04-14