aave-desktopwalletinstaller[.]com
“Aave Desktop”
Збережене виявлення
Виявлено маскування
- Тип маскування
content_split- Оцінка маскування
- 1/6
Зведення доказів
PhishDestroy identifies aave-desktopwalletinstaller.com as a fraudulent domain actively impersonating the Aave brand to distribute malicious desktop wallet software. This site poses a direct threat to cryptocurrency users by masquerading as a legitimate Aave installer, tricking visitors into downloading compromised software that can steal private keys or inject malware into digital asset transactions. Technical analysis reveals that the domain leverages a spoofed identity, mimicking the official Aave desktop application to deceive users seeking secure wallet solutions. The scheme’s sophistication lies in its use of a brand-name structure combined with a lookalike installer, exploiting trust in well-known DeFi protocols to propagate fraud.
Evidence supporting the high-risk classification of this domain includes multiple verifiable threat indicators: the domain was registered on April 15, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar known for accommodating high-risk registrations. The site resolves to IP address 216.198.79.65 and currently exhibits zero detections on VirusTotal (1/95 scanners). While SSL encryption via Let’s Encrypt may suggest legitimate intent, SSL alone cannot validate authenticity in cases of brand impersonation, especially for emerging or newly registered domains. The absence of detections does not equate to safety, particularly given the domain’s clear intent to impersonate Aave, a leading DeFi platform.
If you have visited aave-desktopwalletinstaller.com or downloaded any software from this site, immediately cease use of the installer and disconnected the device from the internet. Scan your device using updated antivirus and anti-malware tools to detect and remove potential threats. Do not enter private keys, seed phrases, or wallet passwords on any page linked from this domain. If you entered credentials or performed transactions, revoke associated wallet access via your legitimate Aave interface or wallet provider and transfer assets to a clean, offline wallet. Report the incident to Aave’s official security channel and monitor your blockchain transactions for unauthorized activity. Always verify software sources by cross-checking URLs against official Aave domains and installing applications only from verified repositories or the project’s official website.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
8 зовнішніх джерел під наглядом Збігів немає
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології
Виявлено 2 технології з високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of aave-desktopwalletinstaller.com · checked Apr 21, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога