# www.pumpazon.xyz — SUSPICIOUS > pumpazon.xyz is a crypto drainer phishing site pretending to be Amazon. Out of 95 VirusTotal scanners, 1 flagged it as malicious. ## Summary PhishDestroy identifies pumpazon.xyz as an active crypto drainer that mimics the Amazon website to steal cryptocurrency funds. Domain intelligence shows pumpazon.xyz was only flagged by 1 out of 95 VirusTotal security vendors as of today, yet its recent creation date of November 20, 2025, combined with its hosting through HOSTINGER operations, UAB and resolution to IP 64.29.17.1 raises elevated suspicion. The presence of a Let’s Encrypt SSL certificate suggests an attempt to appear legitimate, though this alone does not guarantee safety. If you have already visited pumpazon.xyz, disconnect any connected wallets immediately and do not enter any credentials or approve any transactions. Use a separate device or clean browser session to scan for malware and revoke any suspicious token approvals through your wallet interface or tools like Etherscan. Report the domain to PhishDestroy with any wallet interactions to help protect the community. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2025-11-20 18:20:33 - Registrar: HOSTINGER operations, UAB - IP: 64.29.17.1 ## Detection Status - VirusTotal: 1 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/26fb8bd2-a2e1-4cca-a7e2-daa1c5d9bdcd - PhishDestroy: https://phishdestroy.io/domain/www.pumpazon.xyz/ - LLM endpoint: https://phishdestroy.io/domain/www.pumpazon.xyz/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/www.pumpazon.xyz/ Last updated: 2026-03-24