hypurrfi[.]net
“HypurrFi Lending Market”
Ringkasan bukti
This domain, hypurrfi.net, is flagged as a crypto credential theft operation targeting users of the HypurrFi Lending Market platform. The site is designed to harvest login credentials, wallet recovery phrases, and private keys under the guise of a legitimate decentralized finance service. Users who interact with the site risk immediate compromise of their cryptocurrency assets, as stolen credentials are typically exploited within minutes of submission. The threat extends beyond financial loss, as exposed credentials may enable attackers to pivot into linked accounts or deploy secondary malware payloads. Analysis indicates this domain was registered on July 17, 2025, through Web Commerce Communications Limited, an uncommon registrar for legitimate financial services. The domain resolves to the IP address 188.114.97.3 and has been flagged by 3 out of 95 security vendors on VirusTotal, including specialized crypto threat detection engines. Additional infrastructure analysis reveals the domain appears on two security blocklists and has been taken offline, suggesting either enforcement action or an attempt to evade detection. The combination of recent registration, low trust scores (0/100 on Gridinsoft), and targeted impersonation of a known lending platform confirms the elevated risk classification. If you visited hypurrfi.net or entered any credentials, take immediate action to secure your assets. First, revoke all active sessions and approvals for the affected wallet using a trusted device. Transfer remaining funds to a new wallet with a fresh seed phrase, as the original may be compromised. Scan your device for malware using updated security tools to detect potential secondary infections. Monitor all linked accounts for unauthorized activity and enable multi-factor authentication where available. Report the incident to relevant crypto security platforms and consider filing a report with local cybercrime authorities. Avoid reusing passwords or recovery phrases from the compromised session, as these may be exploited across multiple services.
Data Coverage
Intelijen Keamanan Jaringan
Alur Tanggapan Ancaman Pipeline
Cakupan daftar blokir
10 sumber eksternal dipantau · snapshot tersimpan 11/08/2026
9 sumber eksternal dipantau Tidak cocok
Linimasa deteksi
-
Cloudflare Radar
Pemindaian Cloudflare Radar tersimpan · Buka pemindaian
-
VirusTotal
2 → 3
Tangkapan tersimpan
Intelijen Domain
Detail teknisDNS, nama TLS, dan stempel waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisis VirusTotal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive