aesthetesrewards[.]com
“Aesthetes — Curated Digital Art on XRPL · Genesis Allocation”
aesthetesrewards.com — Acessível · acesso restrito (HTTP 403). Tipo de golpe: Generic Phishing. Resumo das evidências: VirusTotal 6/91 (alphaMountain.ai, CRDF, Ermes, Forcepoint ThreatSeeker, Gridinsoft); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 68/100. Registrador: NiceNIC.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, aesthetesrewards.com, is identified as a generic phishing threat designed to deceive users involved in XRPL-based digital art or token allocations. The site masquerades as a curated digital art platform under the guise of 'Genesis Allocation,' likely targeting individuals interested in cryptocurrency or non-fungible token (NFT) distributions on the XRP Ledger (XRPL). Analysis indicates the domain is engineered to harvest credentials, private keys, or financial information from unsuspecting victims by exploiting their interest in digital asset allocations or exclusive art drops. Infrastructure analysis reveals multiple technical indicators supporting its malicious classification. The domain was registered on May 05, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar frequently associated with high-risk domains. It resolves to the IP address 104.21.68.148 and is currently listed on three security blocklists. VirusTotal reports that 6 out of 95 security vendors flag this domain as malicious, a detection rate consistent with phishing campaigns. Additionally, the site uses a Let's Encrypt SSL certificate (identifier: E8), which, while providing encryption, does not validate the legitimacy of the underlying content. The page title, 'Aesthetes — Curated Digital Art on XRPL · Genesis Allocation,' further corroborates the phishing narrative by mimicking legitimate XRPL projects. Users who have visited aesthetesrewards.com or interacted with its content should take immediate remedial actions. Disconnect any wallets or accounts linked to the site and revoke any permissions granted to unknown smart contracts or applications. Conduct a full scan of the device using updated security tools to detect potential malware or credential-stealing software. Monitor financial accounts and XRPL wallets for unauthorized transactions, and consider rotating passwords or private keys if sensitive information was entered. Report the domain to relevant security communities or blocklist providers to aid in broader threat mitigation efforts. Given the domain's current offline status, users should remain vigilant for similar phishing attempts using rebranded or newly registered domains.
Inteligência de segurança de rede Registrar context
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-15 02:37:32 UTC
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo