uniler[.]limited
“Uniswap | Trade crypto and NFTs safely on the top DeFi platform”
ملخص الأدلة
The domain uniler.limited was registered on February 21, 2026 through Atak Domain Bilgi Teknolojileri A.Ş. and is currently taken offline, returning an HTTP 403 status. DNS resolution points to IP address 172.67.146.116, which belongs to Cloudflare, Inc. (AS13335) and is geolocated in the United States. The domain uses Cloudflare’s service, as indicated by the nameservers lady.ns.cloudflare.com and etienne.ns.cloudflare.com, and the observed technology stack includes Node.js, Express, and HTTP/3.
The SSL certificate is issued by Google Trust Services / WE1, confirming that TLS termination is performed by Cloudflare’s edge. The page title served by the site references Uniswap, a well‑known decentralized exchange, but the site is classified as a wallet/seed phishing operation that impersonates the Aave brand. VirusTotal scans show that 12 of 93 security vendors have flagged the domain, and it appears on one external security blocklist. PhishDestroy has also listed the domain as malicious.
The available intelligence does not provide a full content dump, so the exact phishing payload or credential‑capture mechanisms remain unknown. Defenders should block the domain at the DNS and proxy layers, monitor for any outbound connections to the Cloudflare IP range associated with this host, and add the domain to internal blocklists. Incident response teams should also correlate any recent Aave‑related credential theft alerts with activity from this domain during the short window it was active. Continuous re‑evaluation is advised in case the site is re‑hosted on a different infrastructure, as the current evidence points to a deliberately crafted impersonation campaign leveraging legitimate‑looking TLS and popular DeFi terminology to increase credibility.
Data Coverage
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS0 Zero | uniler.limited |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
المخطط الزمني للاكتشاف
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات
حُدّدت ٤ تقنيات عالية الثقة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of uniler.limited · checked Mar 2, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب