hyperliquid-xyz-eng[.]pages[.]dev
“Hyperliquid Explained – Your Hub to the Hyperliquid Universe”
证据摘要
Domain hyperliquid-xyz-eng.pages.dev has been flagged for active brand impersonation targeting Hyperliquid, a decentralized exchange platform. The domain leverages Cloudflare Pages to host a fraudulent replica of Hyperliquid’s interface, likely intended to harvest credentials or facilitate crypto drainer operations. No drainer kit artifacts were observed in initial analysis, but the threat actor’s use of a legitimate-looking subdomain (hyperliquid-xyz-eng) suggests a deliberate effort to exploit user trust in the brand. Technical indicators reveal a concerning lack of detection, with VirusTotal currently scoring 0/95 despite the domain’s malicious intent. The domain was registered through Cloudflare, Inc., resolving to IP 188.114.97.3 and protected by a Google Trust Services SSL certificate. While the exact creation date is unverified, the domain’s active status and infrastructure alignment with known impersonation tactics warrant immediate scrutiny. PhishDestroy identifies this domain as active and under investigation, with current risk assessed as elevated due to the absence of detection and brand targeting. Users are advised to block the domain at the network level and report it to Hyperliquid’s security team. Remaining risk hinges on the actor’s ability to evade detection longer, emphasizing the need for proactive monitoring and takedown efforts.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of hyperliquid-xyz-eng.pages.dev · checked Apr 10, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控