hyperliquide-xyz[.]pages[.]dev
“Hyperliquid XYZ - Advanced DeFi Trading Platform”
证据摘要
PhishDestroy identifies hyperliquide-xyz.pages.dev as an active brand-impersonation domain targeting Hyperliquid users. The site currently presents a high-fidelity replica of the legitimate Hyperliquid interface to harvest login credentials and session tokens, and is being tracked as active within PhishDestroy’s seed-indexed database under unique seed 649017.
This domain was flagged by 1 of 95 VirusTotal vendors at the time of analysis, indicating it remains undetected by most AV engines. It is registered through Cloudflare, Inc., resolves to IP 188.114.97.3, and relies on a Google Trust Services SSL certificate to appear legitimate. Despite zero detections on VirusTotal and no presence on public blocklists, the domain exhibits classic brand-impersonation hallmarks and is actively monitored for evolving payloads or redirections.
Current status is active, with no evidence of takedown as of the latest scan. Users should avoid accessing hyperliquide-xyz.pages.dev or entering any credentials. Security teams are advised to block the domain at DNS and firewall levels, and to report the URL to Hyperliquid’s abuse team and PhishDestroy via the seed-tagged submission portal. Continuous monitoring is recommended due to the low vendor detection rate and the potential for rapid infrastructure changes.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of hyperliquide-xyz.pages.dev · checked Apr 10, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控