learn-wallet-rabby-x[.]pages[.]dev
“Rabby Wallet - Secure, Smart & Seamless Web3 Experience”
learn-wallet-rabby-x.pages.dev — Contenu indisponible. Usurpation de l'identité de la marque : Aave; Type d'arnaque : Seed Phrase Theft. Résumé des preuves: VirusTotal 11/95 (ChainPatrol, alphaMountain.ai, BitDefender, CyRadar, Fortinet); Google Safe Browsing flagged; PhishDestroy score 83/100. Bureau d’enregistrement: Cloudflare.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
As of July 24, 2026, the domain learn-wallet-rabby-x.pages.dev has been confirmed as a high-risk Wallet/Seed phishing site targeting Aave users. This domain was created on November 08, 2025, and registered through Cloudflare, Inc. The site employs technologies such as HSTS, Cloudflare services, and HTTP/3, which can enhance its credibility and make it appear legitimate. The page title found is 'Rabby Wallet - Secure, Smart & Seamless Web3 Experience,' suggesting that it may attempt to mimic the Rabby Wallet interface or deceive users into believing it is an official Aave service. The domain has a Gridinsoft trust score of 0/100, indicating a complete lack of trustworthiness. It appears on one security blocklist and has been flagged by Google Safe Browsing for social engineering.
PhishDestroy has also marked the domain as blocked, further solidifying its reputation as a malicious site. The infrastructure analysis reveals that the domain resolves to the IP address 2606:4700:310c::ac42:2c9e, which is located in the United States and is part of the Cloudflare, Inc. network (AS13335). The SSL certificate is issued by Google Trust Services, which can add another layer of perceived legitimacy but should not be taken as a sign of safety given the domain's malicious nature. The HTTP status of the domain is 403, indicating that it is currently offline or that access is forbidden.
Despite this, the domain should still be considered a threat as it can be reactivated at any time. Defenders should immediately add this domain to their blocklists and monitor for any resurrections or related activity. Given that the site impersonates Aave, organizations and users involved with Aave or Rabby Wallet should be particularly vigilant and informed of this threat. Educating users about the risks of phishing and the importance of verifying URLs and SSL certificates can help mitigate the impact of such attacks.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Analyse forensique
Technologies · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analyse VirusTotal
Preuves archivées
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of learn-wallet-rabby-x.pages.dev · checked Mar 25, 2026
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif