uniswap-exchange[.]limited
“Bitwarder | Bitwarder Giriş | Your One- Stop Design Solution | Bitwarder”
Analysis of uniswap-exchange.limited indicates an active high‑risk crypto‑scam infrastructure that explicitly impersonates the Uniswap brand. The domain resolves to the IP address 188.114.97.3, which is owned by AS13335 Cloudflare, Inc. and geolocated in the United States. DNS resolution is performed by the Cloudflare authoritative nameservers darwin.ns.cloudflare.com and mallory.ns.cloudflare.com, confirming that the domain was registered through Cloudflare, Inc. The web server returns an HTTP 520 status code, suggesting a Cloudflare edge‑origin communication error, but the site remains reachable and is presently blocked by the PhishDestroy blocklist. VirusTotal analysis shows that four of ninety‑five security vendors have flagged the domain, and it appears on one additional security blocklist, reinforcing the malicious assessment.
The presented SSL certificate is issued by Google Trust Services under the WE1 root, indicating a valid TLS handshake despite the underlying malicious intent. The page title returned is "Bitwarder | Bitwarder Giriş | Your One- Stop Design Solution | Bitwarder", which does not reference Uniswap and suggests possible reuse of compromised or rented infrastructure. Detected backend technologies include Apple iCloud Mail, Node.js, Express, Salesforce, Google Sign‑in, Amazon Web Services, and Stripe, all of which are typical of service‑oriented scam sites.
Gridinsoft has assigned a trust score of 0 out of 100, and the overall classification is a crypto scam targeting Uniswap users. Defenders should add the domain and its IP address to network‑level blocklists, monitor for any related C2 traffic, and enforce email and web filtering rules that reference the Uniswap brand. Continued observation is advised to detect any evolution of the payload or credential‑harvesting mechanisms that may be introduced on the site.
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies · 11 identified
JavaScript runtime built on Chrome V8 engine for server-side development.
Cloud computing platform offering compute, storage, and networking services.
Payment processor — credit card and alt-payment acceptance.
stripe.comHTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comVirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of uniswap-exchange.limited · checked Mar 2, 2026
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive