quenthra-haven[.]pages[.]dev
“Suspected phishing site | Cloudflare”
Kaydedilmiş gözlem
Gözlemlenen başlık farkı
Kanıt özeti
This domain, quenthra-haven.pages.dev, has been identified as a phishing resource engaged in brand impersonation targeting Aave, a decentralized finance protocol. The site is currently offline, though prior analysis confirms its malicious intent through deceptive design elements mimicking legitimate Aave interfaces. The domain was operational long enough to be flagged by security systems but has since been taken down, likely due to enforcement actions or abandonment by the threat actor. Infrastructure analysis reveals the domain was registered through Cloudflare, Inc. on November 17, 2025, and resolved to the IP address 198.18.1.173, geolocated within the United States under AS13335 (Cloudflare, Inc.). The SSL certificate was issued by Google Trust Services (WE1), a common practice among phishing sites leveraging legitimate certificate authorities to appear credible. Detection metrics indicate the domain was flagged by 17 of 95 security vendors on VirusTotal, while two independent blocklists—PhishDestroy and PhishingDB—listed it as malicious. The page title, 'Suspected phishing site | Cloudflare,' further corroborates its classification as a high-risk resource, though this may reflect post-compromise labeling rather than an original attribute. The current offline status of quenthra-haven.pages.dev suggests mitigation efforts have temporarily disrupted this campaign. However, the infrastructure remains a potential vector for future abuse, particularly given its association with a widely used content delivery network. Organizations and users are advised to maintain blocklist updates, particularly those referencing the domain or its resolved IP address. Security teams should monitor for re-registration attempts under similar naming conventions or infrastructure reuse. End-users are cautioned against interacting with any unsolicited communications referencing Aave or decentralized finance platforms, especially those directing to newly registered or Cloudflare-hosted domains.
Data Coverage
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
Tespit zaman çizelgesi
-
Alan adı durumu
Erişilebilir → Erişilemiyor
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
Adli İstihbarat
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of quenthra-haven.pages.dev · checked Apr 20, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin