aave-dappx[.]sh
“404 Error”
Kanıt özeti
On 23 July 2026, the domain aave-dappx.sh was observed as part of a brand‑impersonation campaign targeting the cryptocurrency platform Aave. The domain was registered on 8 August 2025 through NiceNIC International Group Co., Limited and is currently offline. DNS resolution points to the IP address 95.129.234.38, which belongs to the autonomous system AS57724 operated by DDOS‑GUARD LTD in Russia. The domain uses Cloudflare name servers bingo.ns.cloudflare.com and leo.ns.cloudflare.com, indicating that traffic is proxied through Cloudflare’s network.
No TLS certificate was found for the host, so HTTPS connections are not available. Threat intelligence shows that the domain appears on a single security blocklist and is explicitly blocked by the PhishDestroy service. VirusTotal analysis recorded 14 positive detections out of 95 scanned security vendors, reinforcing the malicious classification. Reputation services assign a Gridinsoft trust score of 0 / 100 and a Scamadviser score of 25 / 100, both reflecting a high likelihood of abusive activity.
The HTTP response yields a page title of “404 Error”, suggesting that the site either serves a default error page or has been taken down after detection. The campaign is labeled as a “Crypto Scam”, implying that the domain may have been used to lure victims into fraudulent cryptocurrency transactions, although the exact payload or luring technique cannot be confirmed from the available data. Defenders should continue to monitor DNS queries for the aave-dappx.sh name and its associated IP range, enforce blocklisting in perimeter defenses, and ensure that any user‑initiated connections to the domain are denied. Because the site is currently offline, ongoing verification of content is not possible; however, the combination of registrar information, hosting location, detection counts, and low trust scores provides sufficient evidence to treat the domain as malicious and to include it in threat‑intel feeds.
Data Coverage
Güvenlik Sinyalleri
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 12.08.2026
Kaydedilmiş sonuç kanıtı
Sonuç ve kaldırma ilişkilendirmesi
- Sonuç
unknown- Erişilebilirlik
unreachable- Neden
origin_unreachable- Mekanizma
http_5xx- Güven
- 20%
- İlk gözlem
- Son gözlem
Tahmini erişilememe
Erişilemezliğe kadar geçen süre: 0 hKanıt SHA-256 3a5377ae30a6
Tespit zaman çizelgesi
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
-
Erişilebilirlik
İlk kayıtlı değer: DNS etkin değil
f93a11f87e4d -
Erişilebilirlik
DNS etkin değil → Bilinmiyor
d799f1b7945b -
Erişilebilirlik
Bilinmiyor → Etkin değil
10272a8e92cd -
Erişilebilirlik
Etkin değil → DNS etkin değil
82700dfc23e1 -
Erişilebilirlik
DNS etkin değil → Bilinmiyor
aa6afb0bb20a -
Erişilebilirlik
Bilinmiyor → DNS etkin değil
6dfe9145995c -
Erişilebilirlik
DNS etkin değil → Bilinmiyor
82e86c4e2a3f -
Erişilebilirlik
Bilinmiyor → DNS etkin değil
d0b7046e8c2f
Tümünü göster (1)
-
Erişilebilirlik
DNS etkin değil → Bilinmiyor
3a5377ae30a6
Topluluk raporları
1 topluluk üyesi tarafından bildirildi; ilk görülme 29.10.2025
- Kayıtlı raporlar
- 1
- Bildirilen benzersiz URL’ler
- 1
Topluluk istihbaratı
3 topluluk raporu
KategoriPHISHING
DuckDuckGo search engine displayed a malicious website impersonating Aave as the first result for the search phrase "Aave". I visited the website and connected my wallet. After the wallet connection, the site requested multiple transaction approvals. The first approval was actual
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
VirusTotal Analizi
Benzer alan adları
95 kayıtlı benzer alan adı
Tümünü göster (83)
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin