shibthemetaverse[.]io
“Shib the METAVERSE”
shibthemetaverse.io — Masqué · accessible. Type d'arnaque : Brand Impersonation. Résumé des preuves: VirusTotal 2/91 (CRDF, Gridinsoft); cloaking observed; PhishDestroy score 86/100. Bureau d’enregistrement: Key-Systems.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain shibthemetaverse.io has been identified as a brand impersonation phishing site specifically targeting the Aave decentralized finance protocol. This domain was created on February 21, 2026, and registered through Key-Systems GmbH, with its page title misleadingly displaying "Shib the METAVERSE" to lure unsuspecting users. The domain was flagged by 1 out of 95 security vendors on VirusTotal, indicating a low but present detection rate among antivirus engines. It resolves to the IP address 34.171.211.169 and uses an SSL certificate issued by Let's Encrypt (R12), which is common among phishing sites to appear legitimate. The domain appears on one security blocklist, suggesting it has been recognized as malicious by some threat intelligence sources.
As of the latest analysis, the domain is offline, meaning it has been taken down or is no longer accessible. PhishDestroy recommends that users who may have interacted with this site—especially those who entered credentials or connected wallets—should immediately change their passwords and enable two-factor authentication on their Aave accounts. Monitoring for any unauthorized transactions is also advised, as phishing sites often aim to steal private keys or seed phrases. The risk remains for any associated email addresses or personal information that may have been compromised. Users are urged to always verify URLs independently before interacting with any platform claiming to be related to Aave or other DeFi services.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Technologies · 7 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org Confiance à 100 %YouTube is a video sharing service where users can create their own profile, upload videos, watch, like and comment on other videos.
www.youtube.com Confiance à 100 %React is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org Confiance à 100 %Next.js is a React framework for developing single page Javascript applications.
nextjs.org Confiance à 100 %HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confiance à 100 %Google Analytics is a free web analytics service that tracks and reports website traffic.
google.com Confiance à 100 %Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of shibthemetaverse.io · checked Mar 2, 2026
Analyse de la configuration du site
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif