# faheemaarif3898.github.io — MALICIOUS > faheemaarif3898.github.io hosts a crypto drainer scam flagged by 17/95 VirusTotal vendors. Avoid this site to prevent cryptocurrency theft. ## Summary PhishDestroy identifies faheemaarif3898.github.io as a high-risk crypto drainer scam actively impersonating legitimate services to steal cryptocurrency assets. This domain leverages social engineering tactics to trick users into connecting wallets or revealing private keys, with a primary focus on draining funds from unsuspecting victims. The infrastructure shows signs of a coordinated operation, using automated scripts to capture sensitive wallet data or initiate unauthorized transactions. This domain was flagged by 17 out of 95 VirusTotal security vendors, with Google Safe Browsing classifying it under SOCIAL_ENGINEERING threats. Registered through GitHub, Inc., the domain resolves to IP 185.199.108.153 and has been identified on multiple blocklists including OpenPhish and PhishingDB. The SSL certificate, issued by Let's Encrypt, adds a misleading layer of legitimacy, while the domain's creation date and exact registration timeline remain unverified due to GitHub's privacy protections. As of the latest assessment, faheemaarif3898.github.io remains active and poses an immediate threat to cryptocurrency users. Immediate actions include blocking the domain at the network level, avoiding interactions, and reporting the site to relevant authorities such as Google Safe Browsing or your local cybercrime unit. While GitHub's takedown procedures may eventually remove the domain, the underlying threat actors often re-emerge with new domains, leaving users vulnerable to ongoing scams. Exercise extreme caution and verify all crypto-related websites through official channels before engaging. ## Threat Details - Verdict: MALICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registrar: GitHub, Inc. - IP: 185.199.108.153 ## Detection Status - VirusTotal: 17 vendors flagged - Google Safe Browsing: FLAGGED - Blocklists: 2 hits Lists: ["OpenPhish", "PhishingDB"] ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/248d2144-338d-4ace-9195-c1bddc41477f - PhishDestroy: https://phishdestroy.io/domain/faheemaarif3898.github.io/ - LLM endpoint: https://phishdestroy.io/domain/faheemaarif3898.github.io/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/faheemaarif3898.github.io/ Last updated: 2026-03-27