# restake-etherfi.xyz — SUSPICIOUS > restake-etherfi.xyz is a crypto drainer site with only 1/95 VirusTotal detections. Avoid clicking if you see this domain—it may steal your crypto assets. ## Summary This site poses as a crypto staking service to trick users into connecting wallets, where it drains funds via a crypto drainer script. PhishDestroy identifies this domain was created March 20, 2026, registered via PDR Ltd., and has just 1 out of 95 VirusTotal security vendors flagging it. If you visited, disconnect your wallet immediately, revoke any connected permissions, and run a security scan on your device. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-03-20 19:04:33 - Registrar: PDR Ltd. d/b/a PublicDomainRegistry.com - IP: 172.67.177.156 ## Detection Status - VirusTotal: 1 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/e220485d-54e1-401a-bc22-ce3ad52ada77 - PhishDestroy: https://phishdestroy.io/domain/restake-etherfi.xyz/ - LLM endpoint: https://phishdestroy.io/domain/restake-etherfi.xyz/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/restake-etherfi.xyz/ Last updated: 2026-03-20