# exchange-hiperliquiid.pages.dev — SUSPICIOUS > exchange-hiperliquiid.pages.dev mimics a liquidity pool to steal crypto. Flagged by 0/95 scans, resolve to 188.114.97.3. Avoid interaction and report. ## Summary PhishDestroy identifies exchange-hiperliquiid.pages.dev as an active fake liquidity pool scam under investigation for generic phishing. The domain resolves to IP 188.114.97.3 and is hosted on Cloudflare Pages with a Google Trust Services SSL certificate, indicating infrastructure designed to appear legitimate. Despite zero detections on VirusTotal (0/95), the absence of warnings does not guarantee safety; the domain’s recent creation through Cloudflare and hosting on a reputable CDN suggest an attempt to bypass traditional blocklists by leveraging trusted services. This domain was flagged with a risk level of under_investigation but remains active, posing as a liquidity pool to deceive users into connecting wallets or depositing funds. Key technical indicators include registration through Cloudflare, Inc., resolution to IP 188.114.97.3, and a Google Trust Services SSL certificate intended to establish false trust. The 0/95 VirusTotal score indicates no current detections, but this is not a validation of safety; phishing domains often evade detection until reported by users or analyzed further. The domain’s use of a .pages.dev subdomain under Cloudflare’s Pages service is a common tactic to obscure malicious intent behind a seemingly legitimate platform. To mitigate the risk of falling victim to this fake liquidity pool scam, users should avoid interacting with exchange-hiperliquiid.pages.dev entirely. Verify any liquidity pool or exchange platform through official channels, such as the project’s verified website or social media, before engaging. If you have already interacted with this domain, immediately revoke any connected wallet permissions and transfer funds to a secure wallet not linked to the compromised site. Report the domain to your security software, relevant cryptocurrency forums, and platforms like VirusTotal to aid in its detection and removal. Exercise heightened caution with domains hosted on Cloudflare Pages or similar services, as they can be weaponized for phishing campaigns. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registrar: Cloudflare, Inc. - IP: 188.114.97.3 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/00a90d94-4bd3-4abd-8848-3137115eac85 - PhishDestroy: https://phishdestroy.io/domain/exchange-hiperliquiid.pages.dev/ - LLM endpoint: https://phishdestroy.io/domain/exchange-hiperliquiid.pages.dev/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/exchange-hiperliquiid.pages.dev/ Last updated: 2026-04-12