# everberexetentional.pages.dev — SUSPICIOUS > everberexetentional.pages.dev is a crypto drainer phishing domain with 0/95 VirusTotal detections. Take immediate action to block this threat. ## Summary PhishDestroy identifies everberexetentional.pages.dev as a crypto drainer phishing domain currently under active investigation. This Pages.dev subdomain is distributing malicious scripts designed to drain cryptocurrency wallets without user consent. The threat remains in active status with confirmed malicious behavior. This domain was flagged by 0 of 95 VirusTotal vendors as of the latest scan. Registered through Cloudflare, Inc., it resolves to IP address 172.66.44.130 and operates under Google Trust Services' SSL certificate, which does not guarantee legitimacy. The domain carries no blocklist history but exhibits high-risk characteristics consistent with crypto drainer campaigns. Current status requires immediate containment. Security teams should blacklist everberexetentional.pages.dev and 172.66.44.130 at network and endpoint levels. Block all Pages.dev subdomains with similar naming patterns. Monitor for wallet drain transactions and alert users to avoid this domain entirely. Comprehensive threat intelligence should be updated to include this domain in crypto drainer signature databases. The 0/95 VirusTotal detection rate indicates this threat is actively evading current scanning mechanisms. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registrar: Cloudflare, Inc. - IP: 172.66.44.130 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/bf45a43c-2e62-4387-9188-707e54a931a2 - PhishDestroy: https://phishdestroy.io/domain/everberexetentional.pages.dev/ - LLM endpoint: https://phishdestroy.io/domain/everberexetentional.pages.dev/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/everberexetentional.pages.dev/ Last updated: 2026-03-30