v5j74zhm3mf747qgvh5xkg67ks6fxaoclplauxtnqrpqeymsse3q[.]arweave[.]net
“Loading…”
v5j74zhm3mf747qgvh5xkg67ks6fxaoclplauxtnqrpqeymsse3q.arweave.net — Konten tidak tersedia. Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 3/91 (Forcepoint ThreatSeeker, LevelBlue, Phishing Database); URLQuery 1 alert; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Registrar: NameCheap.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
This domain is an active high-risk crypto drainer impersonating the decentralized finance platform Aave. Users who connect wallets to the site are exposed to smart contract exploits that automatically transfer funds to attacker-controlled addresses. The page displays a generic 'Loading…' title, a common tactic to delay user recognition of malicious activity while backend scripts prepare the drainer payload. Analysis indicates the site is designed to mimic Aave’s legitimate interface, tricking users into approving transactions that grant unlimited token access to the attacker. Infrastructure analysis reveals the domain is hosted on the Arweave network, a decentralized storage platform often abused for phishing due to its resistance to takedowns. The domain is flagged by 3 out of 95 security vendors on VirusTotal, including detections for brand impersonation and malicious web content. Additionally, it appears on three security blocklists, further confirming its malicious status. Registration details link the infrastructure to NameCheap, Inc., a registrar frequently associated with phishing campaigns targeting cryptocurrency users. If a user has interacted with this domain, immediate action is required to mitigate financial loss. First, revoke any token approvals granted to the site via a blockchain explorer or wallet interface. Next, transfer remaining assets to a new, secure wallet address. Monitor connected wallets for unauthorized transactions and report the incident to relevant security teams or community alert platforms. Users should also verify the legitimacy of any decentralized finance platform by cross-referencing official documentation and community channels before connecting wallets.
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | solana-rpc.publicnode.com |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Registration: arweave.net
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain arweave.net behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisis VirusTotal
Bukti & Laporan Eksternal
PD-20260607-8A1009 Recipient: abuse@datacamp.co.uk Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive