hyper-swap-26bd[.]jvjkogjv[.]workers[.]dev
“0,99894 | USDT/USDC | Hyperliquid”
hyper-swap-26bd.jvjkogjv.workers.dev — Não verificado. Representação da marca: Hyperliquid; Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 14/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET); 1 external blocklist match (ScamSniffer); PhishDestroy score 97/100. Registrador: Cloudflare Workers.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
PhishDestroy has flagged hyper-swap-26bd.jvjkogjv.workers.dev as a high-risk brand impersonation domain. This domain is actively attempting to deceive users by mimicking Hyperliquid, a legitimate decentralized exchange. The page title "0,99894 | USDT/USDC | Hyperliquid" suggests it is designed to lure victims into connecting their wallets or entering sensitive information under the guise of a trading interface. Such brand impersonation schemes are particularly dangerous as they exploit trust in well-known platforms.
Technical indicators paint a clear picture of malicious intent. The domain resolves to IP 172.67.162.182 and is hosted via Cloudflare Workers, a service often abused for phishing due to its ease of deployment. It appears on two security blocklists and has a VirusTotal detection rate of 5 out of 95 vendors, confirming its malicious nature. The SSL certificate is issued by Let's Encrypt (E7), which is common for phishing sites as they are free and easy to obtain. The unique seed "2fd664" ties this analysis to a specific investigation, ensuring traceability.
To mitigate this threat, users should avoid visiting the domain entirely and report it to their security team or blocklist providers. Organizations should add the domain to their web filters and monitor for any similar domains using patterns like "hyper-swap-*" or "*.workers.dev". Since this is a brand impersonation, affected brands like Hyperliquid should issue warnings to their users. PhishDestroy recommends taking immediate action to prevent credential theft or cryptocurrency loss.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
Tecnologias · 9 identified
Skolengo is an Education Management Software developed by Kosmos Education.
www.skolengo.com 0% confidenceMariaDB is an open-source relational database management system compatible with MySQL.
mariadb.org 0% confidenceJava is a class-based, object-oriented programming language that is designed to have as few implementation dependencies as possible.
java.com 0% confidenceApache Tomcat is an open-source implementation of the Java Servlet, JavaServer Pages, Java Expression Language and WebSocket technologies.
tomcat.apache.org 0% confidenceJSDelivr is a free public CDN for open-source projects. It can serve web files directly from the npm registry and GitHub repositories without any configuration.
www.jsdelivr.com 100% de confiançaHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% de confiançaAnálise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of hyper-swap-26bd.jvjkogjv.workers.dev · checked Jun 7, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo