Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
travelalrets[.]com
“404 - Quick Tip | Cofense”
Сохранённое обнаружение
Обнаружена маскировка
- Тип маскировки
content_divergence- Оценка маскировки
- 2/6
Сводка доказательств
PhishDestroy identifies travelalrets.com as a fraudulent domain engaged in active brand impersonation targeting Aave users. This site is designed to deceive visitors into believing they are interacting with legitimate Aave services, potentially leading to credential theft or cryptocurrency drainer attacks. The domain leverages visual and textual cues to mimic Aave’s branding, creating a convincing facade that could trick even security-conscious users. Security researchers and everyday users should treat this domain as a high-risk threat and avoid any interaction until further investigation is completed. This domain was flagged by 3 out of 95 security vendors on VirusTotal, indicating a recognized but not universally detected threat. Travelalrets.com was registered on January 31, 2013, through MarkMonitor, Inc., a registrar often used by legitimate enterprises but also exploited by threat actors for impersonation schemes. The domain resolves to IP address 52.204.246.179 and holds a valid SSL certificate issued by Let’s Encrypt, which may give it an air of legitimacy despite its malicious intent. These technical indicators suggest the operators behind this domain are sophisticated enough to maintain operational security while avoiding immediate detection. If you have visited travelalrets.com, cease all interaction with the site immediately and do not enter any credentials or cryptocurrency wallet connections. Scan your device for malware using reputable antivirus software, as the site may attempt to deploy crypto drainers or credential-stealing scripts. Change any passwords or wallet credentials you may have entered while on the site, and report the domain to PhishDestroy or your organization’s security team. Avoid clicking on any links from unsolicited emails or messages purporting to be from Aave, as these may direct you to fraudulent domains like travelalrets.com. Stay vigilant and verify the authenticity of websites by checking domain spellings, SSL certificates, and direct contact with the official brand before engaging.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260328-F393D9- Заголовок сохранённой страницы
- Sign in - Google Accounts
- PDF-файл
- PDF с доказательствами
Правовое основание
Полный текст доказательств
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | travelalrets.com |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 13.08.2026
10 внешних источников под наблюдением Совпадений нет
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of travelalrets.com · checked Mar 28, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание