heavenmarketing[.]pk
“Default Web Site Page”
heavenmarketing.pk — المحتوى غير متوفر. نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 5/91 (alphaMountain.ai, CRDF, Gridinsoft, SOCRadar, Webroot); URLQuery 3 alerts; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 75/100.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain, heavenmarketing.pk, is confirmed as a brand impersonation site targeting Aave, a decentralized finance protocol. Analysis indicates the site was designed to mimic legitimate Aave interfaces, likely to facilitate unauthorized cryptocurrency transactions or credential harvesting. No specific drainer kit signatures were identified in available telemetry, but the domain structure and content align with known impersonation tactics used in crypto-related fraud schemes. Technical indicators reveal the domain was flagged by 5 out of 95 security vendors on VirusTotal, with a Gridinsoft trust score of 0/100 and a Scamadviser score of 1/100. The domain was registered on April 28, 2026, and resolved to the IP address 162.0.232.43. It appears on three security blocklists and was included in one AlienVault OTX threat intelligence pulse. The registrar details are not publicly disclosed, but the domain's creation date suggests it was deployed with malicious intent shortly after registration. Google Safe Browsing status is not explicitly noted, but the domain's presence on multiple blocklists confirms its classification as malicious. As of the latest assessment, heavenmarketing.pk has been taken offline, reducing immediate exposure risk. However, the infrastructure associated with the IP address (162.0.232.43) may still pose residual threats, as it could be reused for future malicious campaigns. Organizations and users are advised to block the domain and its associated IP at the network level. Monitoring for similar impersonation domains targeting Aave or other decentralized finance platforms is recommended, particularly those registered under suspicious TLDs or with recent creation dates. Users who interacted with the domain should revoke any connected wallet permissions and audit transaction histories for unauthorized activity.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | heavenmarketing.pk |
phishing | Phishing Block |
| Hagezi Threat Feed | heavenmarketing.pk |
malicious | Sinkholed |
| DNS4EU | heavenmarketing.pk |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of heavenmarketing.pk · checked Jun 26, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب