# web3ai.cyou — SUSPICIOUS > web3ai.cyou is a crypto drainer impersonating AI services. Flagged by 0 of 95 VirusTotal vendors. Avoid this site immediately. ## Summary PhishDestroy identifies web3ai.cyou as an active crypto drainer scam targeting Web3 users under the guise of artificial intelligence services. The domain is currently unflagged by VirusTotal but has been blocked by SEAL and MetaMask due to its malicious nature. Users should exercise extreme caution to avoid credential theft or crypto fund loss. This domain was flagged by SEAL and MetaMask, two reputable security platforms. VirusTotal currently shows 0 detections out of 95 vendors, while the domain resolves to IP 170.33.12.185. Registered through Alibaba Cloud Computing Ltd. (HiChina), the domain was created on March 24, 2026, and appears on 2 security blocklists. Trust scores remain critically low due to its recent creation and lack of reputation. The current status of web3ai.cyou remains active, posing an ongoing threat to unsuspecting visitors. Concrete recommendations include avoiding all interactions with this domain, verifying any AI-related services through official channels, and reporting suspicious activity to relevant security teams. Users who may have already visited should scan their devices for malware and revoke any unauthorized wallet connections immediately. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-03-24 05:56:24 - Registrar: Alibaba Cloud Computing Ltd. d/b/a HiChina (www.net.cn) - IP: 170.33.12.185 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 2 hits Lists: ["SEAL", "MetaMask"] ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/domains/web3ai.cyou - PhishDestroy: https://phishdestroy.io/domain/web3ai.cyou/ - LLM endpoint: https://phishdestroy.io/domain/web3ai.cyou/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/web3ai.cyou/ Last updated: 2026-04-04