app[.]hyperswsap[.]exchange
“Swap Tokens | HyperSwap Exchange on Hyperliquid”
app.hyperswsap.exchange — No verificado. Suplantación de marca: Discord; Tipo de estafa: Social Media Phishing. Resumen de las pruebas: VirusTotal 11/91 (ADMINUSLabs, ChainPatrol, BitDefender, CRDF, Forcepoint ThreatSeeker); 1 external blocklist match (ScamSniffer); PhishDestroy score 95/100.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
Analysis of app.hyperswsap.exchange indicates a phishing domain targeting Discord users, currently offline as of July 23, 2026. The domain was registered on February 21, 2026, and resolved to IP address 192.119.110.232, hosted on AS54290 (Hostwinds LLC) in the Netherlands. Infrastructure review shows the SSL certificate is issued by R13, a common low-assurance provider in phishing campaigns. The page title, 'Swap Tokens | HyperSwap Exchange on Hyperliquid,' suggests an attempt to mimic a cryptocurrency exchange interface, though no direct evidence confirms this as the primary lure. The scam type is classified as social media phishing, specifically impersonating Discord, a platform frequently targeted for credential theft and fraudulent token distribution.
Security vendor detections are limited but notable: 13 of 93 engines on VirusTotal flagged the domain, and it appears on two independent blocklists. PhishDestroy and ScamSniffer have both listed the domain, reinforcing its malicious classification. Gridinsoft assigns a trust score of 0/100, consistent with high-risk infrastructure. No evidence links the domain to known phishing kits or additional malicious subdomains at this time. Defenders should treat this domain as part of a Discord-focused phishing campaign.
While the site is offline, monitoring for reappearance under the same or similar infrastructure is recommended. Network-level blocking of 192.119.110.232 and associated Hostwinds LLC ranges may mitigate related threats. Further investigation into the SSL certificate chain and historical DNS records could reveal additional linked domains. The exact content and functionality of the phishing page remain unconfirmed due to its current offline status.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Análisis de VirusTotal
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.