hyperrelay.network
“HyperRelay — A Decentralized Relay Network for Encrypted Frames”
Evidence Summary
This domain, hyperrelay.network, is flagged as a generic phishing site designed to mimic legitimate decentralized relay networks for encrypted communications. Analysis of the page title, 'HyperRelay — A Decentralized Relay Network for Encrypted Frames,' suggests an attempt to deceive users into believing the site offers secure, decentralized services. No specific brand impersonation or known drainer kit signatures were identified, but the domain exhibits characteristics typical of credential harvesting or fraudulent service promotion. Technical indicators reveal limited but concerning detection metrics. The domain is flagged by 1 of 95 security vendors on VirusTotal, with registration occurring on February 21, 2026, through NameCheap, Inc. It resolves to the IP address 188.114.96.3, which is associated with Cloudflare infrastructure, including HTTP/3 and Cloudflare Browser Insights. The domain appears on a single security blocklist and has a Gridinsoft trust score of 0/100. No Google Safe Browsing (GSB) detections were reported at the time of analysis. The domain has been taken offline, reducing immediate risk to end users. However, the infrastructure remains a potential vector for future malicious activity, particularly given its association with Cloudflare and the use of modern web technologies to evade detection. Organizations are advised to monitor for related domains registered through NameCheap or resolving to similar Cloudflare IP ranges. Users should verify the legitimacy of decentralized relay services through official channels and avoid interacting with unverified domains, especially those created recently or lacking established reputational signals.
Threat Response Pipeline
Public Blocklist Status
Stored observation
Observed title contrast
Stored Capture · 2 sources
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies · 3 identified
VirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of hyperrelay.network · checked Jun 26, 2026
Community reports
Reported by 1 community member, first seen Feb 15, 2026
- Stored reports
- 1
- Unique reported URLs
- 1
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive