# flaremainnet.pages.dev — SUSPICIOUS > flaremainnet.pages.dev hosts a crypto-draining phishing site flagged by 2/95 VirusTotal vendors. RUN if you see this domain, it is a live drainer. ## Summary flaremainnet.pages.dev is a live crypto-draining phishing site that steals funds from wallet-connecting victims. When a user connects a wallet, the site silently drains tokens via malicious smart-contract interactions, leaving balances near zero without warning. This domain was flagged by exactly 2 out of 95 VirusTotal security vendors within hours of appearing. It resolves to IP 188.114.97.3, uses a Google Trust Services SSL certificate for added credibility, and was registered through Cloudflare, Inc., a common provider for short-lived phishing pages. If you visited flaremainnet.pages.dev, immediately revoke any wallet permissions granted to the site via your wallet’s connection manager and transfer remaining assets to a fresh wallet. Scan your device with updated antivirus software and consider rotating seed phrases for wallets that ever connected to this URL. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registrar: Cloudflare, Inc. - IP: 188.114.97.3 ## Detection Status - VirusTotal: 2 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/3b9acb36-2d28-44bb-a90c-8b8eb3ef6265 - PhishDestroy: https://phishdestroy.io/domain/flaremainnet.pages.dev/ - LLM endpoint: https://phishdestroy.io/domain/flaremainnet.pages.dev/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/flaremainnet.pages.dev/ Last updated: 2026-03-27