MALICIOUS — CRITICAL
blockwave-miners[.]com
blockwave-miners.com was registered on May 11, 2026 through Hosting Concepts B.V.
- VirusTotal
- 3/91
- Blocklists
- No stored match
- 가용성
- 마지막으로 알려진 활성 · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@registrar.eu.
The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
blockwave-miners.com — 마지막으로 알려진 활성 (HTTP 200). 사기 유형: Brand Impersonation. 증거 요약: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); URLQuery 1 det.; PhishDestroy score 71/100. 등록기관: Hosting Concepts.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
Evidence Analysis
blockwave-miners.com was registered on May 11, 2026 through Hosting Concepts B.V. d/b/a Registrar.eu. The domain is actively hosting a site that displays a “Human verification” page and returns HTTP 302 redirects. Its primary threat is brand impersonation of the Aave cryptocurrency platform, as indicated by the page content and the classification as an impersonation scam. Infrastructure analysis shows the domain resolves to IP 198.251.84.200, which is geo‑located to Luxembourg and associated with the entity FranTech Solutions. The server presents a Let’s Encrypt R12 TLS certificate, reflecting a recently issued, automatically‑renewed certificate. Authoritative name servers are ns5.asurahosting.com and ns6.asurahosting.com, and the MX record points to blockwave-miners.com with priority 0, suggesting the domain may also be used for email abuse. Threat intelligence flags the domain on a single security blocklist and records a Gridinsoft trust score of 0/100, the lowest possible rating. PhishDestroy has already blocked the domain, confirming it as a malicious actor. The HTTP 302 response combined with the “Human verification” title is a typical tactic used to bypass automated scanners and lure users into credential harvesting pages. Although a recent VirusTotal scan returned 0/95 detections, the absence of detections does not imply benign intent. Defenders should add 198.251.84.200 and blockwave-miners.com to network and email deny lists, and monitor DNS queries for the associated name servers. Because the domain may be leveraged for credential‑stealing flows targeting Aave users, security teams should update URL filtering policies to block any URL containing blockwave-miners.com. Continuous re‑scanning of the IP and domain is advised to capture any future malicious payloads or changes in hosting infrastructure.
데이터 적용 범위13 recorded checks
위협 대응 Pipeline
공개 차단 목록 상태
저장된 캡처
도메인 인텔리전스
기술적 세부 사항DNS, SSL SAN, 타임스탬프
ICANN OVERSIGHT
인증 및 RAA 상황
인증 및 RAA 상황
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 분석
증거 및 외부 보고서Independent lookups and source reports
PD-20260511-715DDB Recipient: abuse@registrar.eu Victim safety and official reportingImmediate actions and verified reporting channels
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.