# averagechoicehorizon.live — SUSPICIOUS > averagechoicehorizon.live impersonates Aave to steal crypto. VirusTotal shows 0/95 detections. Users must avoid this site and verify URLs before entering. ## Summary PhishDestroy identifies averagechoicehorizon.live as an active brand impersonation scam targeting Aave users. This domain was flagged by PhishDestroy’s automated analysis pipeline and remains under investigation for further malicious activity. The threat actor behind this domain leverages the trusted reputation of Aave, a leading decentralized finance (DeFi) protocol, to deceive users into entering sensitive information such as wallet credentials, recovery phrases, or private keys. The domain mimics Aave’s branding, including UI elements and domain structure, to appear legitimate at first glance. Technical indicators confirm this domain is malicious and should be treated as a high-risk threat. VirusTotal currently reports 0 detections out of 95 security vendors, indicating this domain has not yet been widely recognized by threat intelligence platforms. The domain was registered through OwnRegistrar, Inc. on May 13, 2025, and resolves to IP address 148.72.153.160. The use of a Let’s Encrypt SSL certificate further adds to its legitimacy, making it harder for users to detect the fraud. Given its recent registration and low detection rate, averagechoicehorizon.live poses a significant risk to users who may unknowingly interact with it. If you have visited averagechoicehorizon.live, immediately disconnect your wallet or revoke any permissions granted to the site. Do not enter any credentials, private keys, or recovery phrases. Clear your browser cache and cookies related to the domain. Report the domain to Aave’s official security team and your local cybersecurity authority. Always verify URLs and use bookmarked links to access Aave’s official platforms. Enable wallet and browser security features such as phishing detection and transaction simulation to minimize exposure to such threats. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) - Target brand: Aave ## Domain Intelligence - Registered: 2025-05-13 12:01:38 - Registrar: OwnRegistrar, Inc. - IP: 148.72.153.160 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/domains/averagechoicehorizon.live - PhishDestroy: https://phishdestroy.io/domain/averagechoicehorizon.live/ - LLM endpoint: https://phishdestroy.io/domain/averagechoicehorizon.live/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/averagechoicehorizon.live/ Last updated: 2026-04-04