# wmqhxusj.top — SUSPICIOUS > PhishDestroy flags wmqhxusj.top as a crypto drainer site with 0/95 VirusTotal detections. This active domain mimics a fake login page to steal crypto assets. ## Summary PhishDestroy identifies wmqhxusj.top as a newly active crypto drainer domain designed to impersonate legitimate login portals and steal cryptocurrency assets. This domain is currently under investigation but remains active, posing an immediate risk to unwary users who may interact with it. The threat involves a fraudulent login page that captures credentials or wallet information, enabling attackers to drain funds from compromised accounts without detection. This domain was flagged with 0 detections out of 95 on VirusTotal, indicating it has evaded initial detection systems. Registered through NameSilo, LLC on February 16, 2026, the domain resolves to IP 172.67.210.14 and holds a valid SSL certificate issued by Google Trust Services, adding a false sense of legitimacy. Its recent creation and clean record suggest it is part of a rapidly evolving threat campaign targeting crypto users. If you visited wmqhxusj.top, disconnect from the internet immediately, clear browser cache and cookies, and scan your device for malware. Verify any future URLs against PhishDestroy’s database before entering credentials or wallet information. Report the domain to PhishDestroy to help block its spread and protect others from this crypto drainer threat. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-02-16 16:24:37 - Registrar: NameSilo, LLC - IP: 172.67.210.14 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/domains/wmqhxusj.top - PhishDestroy: https://phishdestroy.io/domain/wmqhxusj.top/ - LLM endpoint: https://phishdestroy.io/domain/wmqhxusj.top/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/wmqhxusj.top/ Last updated: 2026-04-06