# stakeeth.cyou — SUSPICIOUS > stakeeth.cyou is a crypto drainer site impersonating a staking platform. Check the full report for threat details and safety guidance. ## Summary PhishDestroy identifies stakeeth.cyou as an active crypto drainer domain designed to trick users into connecting their cryptocurrency wallets under the guise of a staking platform. The domain specifically targets Ethereum (ETH) users, leveraging the trust associated with legitimate staking services to facilitate unauthorized fund transfers. Upon wallet connection, the site employs malicious JavaScript to drain assets without explicit user consent, often redirecting victims to fabricated transaction confirmations to mask the theft. This domain was flagged due to its alignment with known drainer kits and patterns observed in recent cybercriminal campaigns targeting DeFi enthusiasts. This domain resolves to IP address 172.67.192.162 and was registered through Dynadot LLC on May 23, 2025. Despite its recent creation, stakeeth.cyou already exhibits suspicious characteristics, including a Google Trust Services SSL certificate and 0 detections out of 95 scanners on VirusTotal, indicating evasion tactics commonly used by emerging threats. The domain's infrastructure further raises red flags, with no current presence on major blocklists but alignment with seed 5e0bfd, a known identifier in PhishDestroy's crypto drainer database. The combination of fresh registration, low detection rates, and deployment of drainer logic suggests this site is actively operated by threat actors seeking to exploit unsuspecting users. Users who visited stakeeth.cyou or connected their wallets should immediately revoke any active session permissions via their wallet's connection settings, such as MetaMask's connected sites list. Transfer any remaining funds to a newly generated wallet address not exposed to the threat domain and monitor transaction history for unauthorized activity. Report the domain to your wallet provider and consider filing a complaint with platforms like Chainalysis or local cybercrime units if funds were stolen. Always verify staking platforms through official channels and never interact with unsolicited links, even if they appear legitimate. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2025-05-23 06:45:06 - Registrar: Dynadot LLC - IP: 172.67.192.162 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/460cf4f8-57d2-43ce-b6d5-ffaa19ed8855 - PhishDestroy: https://phishdestroy.io/domain/stakeeth.cyou/ - LLM endpoint: https://phishdestroy.io/domain/stakeeth.cyou/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/stakeeth.cyou/ Last updated: 2026-04-01