aave-lend-protocol-dex-relay-v109[.]vercel[.]app
“Aave - Open Source Liquidity Protocol”
aave-lend-protocol-dex-relay-v109.vercel.app — Nicht bestätigt. Markenidentität: Aave; Betrugstyp: Impersonation. Zusammenfassung der Beweislage: VirusTotal 15/91 (alphaMountain.ai, BitDefender, CyRadar, ESET, Emsisoft); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. Registrar: Vercel.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
This domain, aave-lend-protocol-dex-relay-v109.vercel.app, is under investigation for DeFi-related phishing activity as of August 03, 2026. The domain is hosted on Vercel's infrastructure, a common platform for both legitimate and malicious deployments. It has been flagged by one security blocklist and is currently blocked by PhishDestroy, though no additional public threat intelligence sources or vendor detections on VirusTotal have been recorded at this time. The absence of detections from 91 scanned vendors on VirusTotal does not confirm safety, as phishing domains often evade initial scans through obfuscation or delayed malicious behavior.
Infrastructure analysis reveals the domain is served via Vercel's content delivery network, which provides SSL encryption by default. No registrar or hosting anomalies are currently documented, though further analysis of DNS records, SSL certificate transparency logs, and subdomain patterns may reveal additional indicators. The domain name itself suggests an attempt to mimic Aave, a decentralized finance protocol, by incorporating terms like 'lend', 'protocol', and 'dex', which are commonly associated with legitimate DeFi platforms. However, the exact content and functionality of the site remain unanalyzed, and no confirmed brand impersonation or specific phishing kit has been identified.
Defenders are advised to treat this domain as suspicious based on its naming convention and blocklist presence. Network-level blocking or monitoring for connections to this domain is recommended, particularly in environments where DeFi or cryptocurrency-related activity occurs. If additional context emerges—such as user reports, phishing kit fingerprints, or malicious payloads—further action may be warranted. Organizations should also review logs for any interactions with this domain and correlate with other indicators of compromise.
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Technologien · 2 identified
Vercel is a cloud platform for static frontends and serverless functions.
vercel.com 100 % KonfidenzHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100 % KonfidenzVirusTotal-Analyse
Archivierte Beweise
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of aave-lend-protocol-dex-relay-v109.vercel.app · checked Aug 3, 2026
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt