# elementex.pro — SUSPICIOUS > Elementex.pro is a crypto drainer phishing site stealing wallet keys. 1/95 VirusTotal scanners flagged it—verify safety on PhishDestroy before you click. ## Summary PhishDestroy identifies elementex.pro as an active crypto drainer phishing domain operating at elevated risk. This site impersonates legitimate crypto platforms to trick users into connecting malicious wallet extensions and transferring digital assets without consent. The domain was flagged after researchers observed redirection chains that load fake wallet-connect popups and drain tokens directly from connected wallets. This domain was flagged by 1 out of 95 VirusTotal security vendors, resolves to IP 188.114.97.3, and was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED on February 04, 2026. It uses a Google Trust Services SSL certificate, which increases its appearance of legitimacy while masking malicious payloads. Despite the trusted certificate issuer, the low vendor detection rate and fresh registration date indicate a rapidly evolving threat with minimal historical scrutiny. The domain has not yet appeared on major public blocklists, suggesting it is still in early deployment stages and actively evading broad detection. To mitigate exposure to this crypto drainer, users should never connect wallets or approve transactions on untrusted sites like elementex.pro. Always verify domains against PhishDestroy’s live threat feed before interacting. If you suspect exposure, immediately revoke connected wallet permissions via your wallet’s settings and scan devices for malicious browser extensions. Report the domain to your wallet provider and local cybercrime units to help disrupt the operation. Consider using hardware wallets for critical assets to prevent unauthorized transfers even if malicious sites are visited. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) - Page title: Elementex.pro ## Domain Intelligence - Registered: 2026-02-04 18:18:09 - Registrar: NICENIC INTERNATIONAL GROUP CO., LIMITED - IP: 188.114.97.3 ## Detection Status - VirusTotal: 1 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/domains/elementex.pro - PhishDestroy: https://phishdestroy.io/domain/elementex.pro/ - LLM endpoint: https://phishdestroy.io/domain/elementex.pro/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/elementex.pro/ Last updated: 2026-04-06