announcement-aave[.]app
“announcement-aave.app | 522: Connection timed out”
Résumé des preuves
The domain announcement-aave.app was registered through Porkbun LLC on 11 December 2025 and resolves to the Cloudflare‑owned address 104.21.37.219, which is associated with AS13335 in the United States. The authoritative name servers are ajay.ns.cloudflare.com and magdalena.ns.cloudflare.com, indicating that the infrastructure is fully hosted behind Cloudflare's edge network. An SSL certificate issued by Google Trust Services (WE1) is present, confirming the use of HTTPS, but the site currently returns a 522 "Connection timed out" error, suggesting that the origin server is either unreachable or deliberately offline.
Detection engines have flagged the domain as malicious: PhishDestroy and ScamSniffer have already blocked it, and two independent security blocklists include the domain. VirusTotal reports that 12 of 93 scanned security vendors label the domain as malicious, reinforcing the suspicion that the site is part of a crypto‑related scam campaign. The page title "announcement-aave.app | 522: Connection timed out" provides the only visible indicator of the site’s status; no content has been captured for analysis because the service is offline.
The domain explicitly impersonates Aave, a well‑known decentralized finance platform, and is categorized as a crypto scam. While the precise mechanics of the fraud (e.g., phishing forms, malicious contracts, or social engineering lures) cannot be confirmed without live content, the combination of brand impersonation, Cloudflare hosting, and the detection history strongly points to an intent to deceive Aave users for financial gain.
Defenders should add announcement-aave.app to URL filtering and email security policies, continue to monitor Cloudflare‑associated IP ranges for related activity, and consider proactive takedown requests with the registrar if further evidence emerges.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 13/08/2026
9 sources externes surveillées Aucune correspondance
Chronologie de détection
-
État du domaine
Accessible → Inaccessible
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
-
État du domaine
Inaccessible → Accessible
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif