MALICIOUS — CRITICAL
approvedexperiencestraveller[.]buzz
The domain approvedexperiencestraveller.buzz, which impersonates the DeFi platform Aave, has been flagged by 2 out of 93 vendors on VirusTotal.
- VirusTotal
- 7/91
- Blocklists
- No stored match
- Disponibilità
- Ammantato · raggiungibile · HTTP 301
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is domainops@godaddy.com.
The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
approvedexperiencestraveller.buzz — Ammantato · raggiungibile (HTTP 301). Tipo di truffa: Investment Scam. Riepilogo delle prove: VirusTotal 7/91 (alphaMountain.ai, Bfore.Ai PreCrime, Chong Lua Dao, CRDF, Forcepoint ThreatSeeker); cloaking observed; PhishDestroy score 81/100. Registrar: GoDaddy.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Analysis
The domain approvedexperiencestraveller.buzz, which impersonates the DeFi platform Aave, has been flagged by 2 out of 93 vendors on VirusTotal. Despite its offline status, this domain previously posed a significant threat by attempting to deceive users into engaging with fraudulent decentralized finance activities. The domain was registered through GoDaddy.com, LLC and hosted on an IP address managed by Cloudflare, Inc. in the United States.
This scam operation cleverly disguised itself under the guise of travel experiences, with a page title reading 'Approved - Travel Experiences', to mislead users into believing they were interacting with a legitimate service. The SSL certificate was issued by Google Trust Services, adding a layer of deceptive credibility to the site. Such tactics are common in phishing schemes, aiming to exploit user trust in well-known brands and secure-looking websites.
PhishDestroy identified this threat on February 11, 2026, ten days before its official domain creation date of February 21, 2026. This early detection highlights the effectiveness of PhishDestroy's proactive monitoring systems, which can identify threats during the critical early period before they are widely recognized by antivirus vendors. The domain's inclusion in public blocklists further underscores its malicious intent.
Although the site is currently offline, the incident serves as a reminder of the evolving tactics used in phishing attacks, particularly in the cryptocurrency and DeFi sectors. Users should remain cautious and verify the authenticity of websites, especially when dealing with financial transactions and decentralized platforms.
Copertura dei dati12 recorded checks
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ZONA SHORTDOT · PROVE PUBBLICHE
.buzz
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisi di VirusTotal
Prove archiviate
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of approvedexperiencestraveller.buzz · checked Mar 6, 2026
Dati e relazioni esterneIndependent lookups and source reports
PD-20260211-E03AED Recipient: domainops@godaddy.com Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.