app-hyperliqnid[.]xyz
app-hyperliqnid.xyz — 内容不可用. 品牌冒充:Hyperliquid; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 2 detections (engine total unavailable) (Gridinsoft, Trustwave); 1 external blocklist match (ScamSniffer); PhishDestroy score 63/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain app-hyperliqnid.xyz is a confirmed phishing site engaged in brand impersonation targeting Hyperliquid, a cryptocurrency exchange. It posed an elevated risk by mimicking the legitimate platform to deceive users into disclosing sensitive information or credentials. No crypto drainer kit was identified in this campaign. The site is currently taken offline, reducing immediate exposure, but prior visitors may remain at risk.
Technical analysis shows app-hyperliqnid.xyz was flagged by 2 of 95 VirusTotal security vendors, including Gridinsoft and Trustwave. It appeared on 2 security blocklists, PhishDestroy and ScamSniffer, though Google Safe Browsing did not flag it. The domain was created on 2026-02-21 and resolved to IP address 172.67.202.200, hosted on Cloudflare’s infrastructure (AS13335) in the US. The SSL certificate was issued by WE1, and no page title was observed during active monitoring.
Users who interacted with app-hyperliqnid.xyz should immediately change any passwords or credentials entered on the site, enable two-factor authentication (2FA) on all accounts, and monitor for unauthorized transactions or login attempts. If cryptocurrency wallets were connected, revoke any token approvals and consider transferring funds to a new wallet. Report the phishing domain to Hyperliquid’s official support channels and submit it to platforms like Google Safe Browsing, PhishTank, or the Anti-Phishing Working Group to aid in broader mitigation efforts.
威胁响应 Pipeline
公共封禁名单状态
取证情报
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。