paveltest[.]com
Verifica phishing e sicurezza per paveltest.com
“paveltest.com”
paveltest.com — Contenuto non disponibile (HTTP 502). Tipo di truffa: Brand Impersonation. Riepilogo delle prove: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); URLQuery 2 alerts; PhishDestroy score 65/100. Registrar: Fewmoretaps OU d/b/a T….
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Analysis
PhishDestroy identifies paveltest.com as an active phishing site engaged in brand impersonation targeting Aave users. The domain mimics Aave’s branding to deceive visitors into entering wallet credentials or sensitive information into a fraudulent login portal. Upon analysis, paveltest.com resolves to IP address 46.224.82.176 and was registered through Fewmoretaps OU under the alias Trustname.com. The domain was created on November 19, 2025, with the page title set to 'paveltest.com'. Currently, paveltest.com shows no detections on VirusTotal (0/95), indicating it has not yet been widely flagged by antivirus engines despite active deployment. The lack of detections suggests this campaign may be in early stages or operating under low detection thresholds, increasing risk for uninformed users. Security analysis reveals paveltest.com as high-risk due to its intent to harvest credentials and potentially deploy crypto drainers. The domain’s recent creation date and zero initial detections are tactical choices to evade early detection systems. Operators are likely leveraging Aave’s reputation to lure cryptocurrency users into a false sense of security. Given the domain resolves to a single IP address, blocklist coverage remains low, enabling continued operation with minimal interference. Users accessing this domain may unknowingly expose wallet private keys, seed phrases, or login credentials to threat actors who can then execute unauthorized transfers or account takeovers. If you visited paveltest.com, immediately disconnect from the internet and scan your device for malware using reputable security software. Do not enter any credentials or cryptocurrency wallet information. Revoke any recently authorized wallet connections via your wallet app or dApp interface if possible. Report the domain to PhishDestroy immediately for blocking and share your findings in threat intelligence forums. Monitor wallet activity closely for unauthorized transactions, and consider transferring remaining assets to a secure, offline wallet. Always verify URLs manually and use official Aave channels for legitimate interactions.
Copertura dei dati12 recorded checks
Informazioni sulla sicurezza di rete Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | paveltest.com |
malicious | Sinkholed |
| Hagezi Threat Feed | paveltest.com |
malicious | Sinkholed |
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisi di VirusTotal
Dati e relazioni esterneIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.