blog-hyperliquid[.]shop
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of blog-hyperliquid[.]shop
The website appears to present itself as a promotional landing page for a cryptocurrency-related campaign tied to “HyperLiquid,” encouraging users to write blog posts in exchange for points and potential HYPE token rewards. Based on the page title, metadata, and screenshot, the site markets a “Season 3 airdrop” program and prominently invites visitors to connect a wallet to participate.
The domain name blog-hyperliquid[.]shop is not the primary brand domain format typically expected for an established crypto platform, and the site uses branding that appears closely aligned with HyperLiquid. Its content focuses on reward earning, point calculations, leaderboard-style participation, and token allocation estimates, which are common themes in crypto airdrop and wallet-connection campaigns.
Based on the available content, this appears to be a cryptocurrency-themed promotional or campaign page rather than a general blog. The operator is not clearly identified in the provided scan data, and no verifiable organizational ownership details are visible from the supplied metadata.
Safety Assessment for blog-hyperliquid[.]shop
Several risk indicators are present in this scan. The domain was flagged by 11 out of 92 security engines, and multiple web-classification sources categorized it as phishing or fraud-related at the time of the scan. In addition, the domain is very new, with an age of only 39 days, and it is not ranked among widely visited sites. Newly registered domains that imitate established crypto branding and request wallet interaction can carry elevated risk.
The page also appears to closely resemble HyperLiquid branding while operating from a separate .shop domain, which may indicate a look-alike setup intended to benefit from brand recognition. The screenshot shows a prominent “Connect Wallet” call to action combined with an airdrop-style reward pitch, a pattern commonly associated with credential harvesting or unauthorized wallet access attempts in the cryptocurrency space.
At the same time, blacklist and malware-file scans did not detect malicious files or blacklist listings in the provided data at the time of this scan. However, phishing pages often do not contain traditional malware payloads, so a clean file scan does not materially offset the phishing indicators here. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was using a valid Let's Encrypt SSL certificate at the time of the scan, which means traffic could be encrypted in transit. However, HTTPS alone does not establish legitimacy. The domain is very recently registered, DNSSEC is unsigned, and the site is hosted behind a ddos-guard web server on infrastructure associated with Iqweb LLC in Belize.
No malicious files, flagged external links, or iframes were identified in the supplied malware scan results, and major blacklist datasets were reported clean at the time of checking. Even so, the strongest technical concern is the combination of short domain age, phishing detections from multiple security engines, and branding that appears designed to resemble a known crypto service.
Share your experience with this website. Was it safe? Did you encounter any issues?