aave2[.]com
“Home | AAVE”
aave2.com — Контент недоступен. Олицетворение бренда: Aave; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 1/95 (Gridinsoft); PhishDestroy score 55/100. Регистратор: Wix.Com.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain aave2.com was registered through Wix.Com Ltd. on 13 December 2024 and is hosted on Google Cloud infrastructure (ASN 396982, United States). DNS resolution points to IP 34.149.87.45, served by the nameservers ns2.wixdns.net and ns3.wixdns.net. No TLS certificate is presented, indicating the site is accessible only over HTTP. The HTTP response returns a page titled “Home | AAVE,” which directly references the Aave brand and aligns with the declared impersonation of Aave.
VirusTotal analysis shows that one of ninety‑five security vendors flagged the domain, providing a minimal but notable detection signal. The domain appears on a single security blocklist and has been actively blocked by PhishDestroy. Current monitoring indicates the site has been taken offline, but the infrastructure remnants remain observable. Defenders should add the IP address 34.149.87.45 and the domain aave2.com to outbound and inbound filtering rules, especially for traffic targeting Aave‑related services.
Continuous watch‑listing of Wix‑hosted domains that resolve to Google Cloud IPs is advisable, as the registrar and hosting combination is frequently leveraged for rapid deployment of impersonation sites. Organizations using the Aave brand should update user awareness materials to reference the exact domain name and emphasize that legitimate Aave communications employ TLS. While the evidence confirms the domain’s intent to mimic Aave, the limited detection count suggests a low‑volume campaign; however, the presence on a reputable blocklist warrants an elevated risk posture until the site is fully retired.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание