app-avaa[.]cam
“Aave - Open Source Liquidity Protocol”
Сводка доказательств
This domain, app-avaa.cam, is a fraudulent site designed to impersonate the legitimate Aave decentralized finance protocol. The page title explicitly copies Aave's branding, reading Aave - Open Source Liquidity Protocol, to trick users into believing they are interacting with the real platform. The threat category is brand impersonation, a form of phishing where attackers mimic a trusted entity to steal login credentials, wallet keys, or other sensitive information. The domain is currently offline, but it was active and posed a high risk to users who might have visited it.
Technical analysis confirms the malicious nature of this domain. VirusTotal reports that 14 out of 95 security vendors flag this domain as malicious, a 14.7% detection rate that indicates broad consensus among threat intelligence platforms. The domain was created on August 25, 2025, through OwnRegistrar, Inc., a registrar sometimes associated with low-quality or abusive registrations. It resolves to IP address 104.21.48.1, which is part of Cloudflare's infrastructure, often abused by phishers for its anonymity. Scamadviser gives it a trust score of 45 out of 100, reflecting low credibility, and it appears on 5 separate security blocklists. Security tools such as Polkadot, Codeesura, PhishDestroy, ScamSniffer, and Enkrypt have already blocked this domain, confirming its threat status.
If you visited this domain, take immediate action. Do not enter any personal information, passwords, or cryptocurrency wallet details. If you already submitted credentials, change them on the legitimate Aave platform immediately and enable two-factor authentication. Monitor your accounts for unauthorized transactions, especially on blockchain wallets. Run a full antivirus scan on your device to check for potential malware. Report the domain to your email provider or security team if it was accessed on a corporate network. The domain is now offline, but similar variations may appear, so always verify URLs directly from official sources.
Data Coverage
Сигналы безопасности
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
6 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
-
VirusTotal
1 → 14
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание