# fixinginternet.com — MALICIOUS > fixinginternet.com is a crypto drainer impersonating tech support. Flagged by 17 of 95 VirusTotal vendors. Block immediately and report. ## Summary PhishDestroy identifies active crypto drainer domain fixinginternet.com impersonating internet repair services. This domain was flagged as a generic phishing attack by 17 of 95 VirusTotal security vendors. Domain fixinginternet.com resolves to IP 178.236.38.1 and was registered via Gname 029 Inc on May 09, 2025. The Let’s Encrypt SSL certificate and recent creation date contribute to its elevated risk profile. Current status is active. Recommend immediate network blocking of domain and IP. Users who accessed this site should scan devices for cryptocurrency wallet compromise, revoke any exposed credentials, and report the domain to their security team and abuse channels. ## Threat Details - Verdict: MALICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2025-05-09 18:16:43 - Registrar: Gname 029 Inc - IP: 178.236.38.1 ## Detection Status - VirusTotal: 17 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/ef20ccd6-67e0-4543-a354-5f65d531a2a3 - PhishDestroy: https://phishdestroy.io/domain/fixinginternet.com/ - LLM endpoint: https://phishdestroy.io/domain/fixinginternet.com/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/fixinginternet.com/ Last updated: 2026-03-22