proposal-hypersfoundation[.]org
“Hyper Foundation”
Сводка доказательств
This domain is a generic phishing threat specifically impersonating the Hyper Foundation brand. Analysis indicates the domain was designed to deceive users into believing they were interacting with a legitimate proposal or voting platform associated with the Hyper Foundation ecosystem. The site likely aimed to harvest credentials, seed phrases, or other sensitive information, posing a risk of account compromise and financial theft. The threat type is consistent with brand impersonation phishing campaigns targeting blockchain and cryptocurrency communities.
Technical evidence confirms the threat level. VirusTotal flags this domain with 9 out of 95 security vendors detecting malicious activity. The domain was registered through NiceNIC International Group Co., Limited, a registrar known for lax verification practices, on September 30, 2025. The domain resolves to IP address 188.114.96.3 and appears on 1 security blocklist. The Gridinsoft trust score is 0 out of 100, indicating high risk. Infrastructure analysis reveals the domain is currently offline, having been taken down by the blocklist provider PhishDestroy.
Users who visited this domain should immediately change any passwords or credentials entered on the site. If cryptocurrency wallet seed phrases or private keys were provided, those wallets are compromised and funds should be transferred to a new, secure wallet. Monitor financial accounts for unauthorized transactions and run a full security scan on any devices used to access the domain. Report any suspicious activity to relevant authorities and consider enabling two-factor authentication on all sensitive accounts.
Data Coverage
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Статус домена
Доступен → Недоступен
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
-
VirusTotal
6 → 9
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание