aavefinance[.]one
“Even geduld...”
Збережене спостереження
Зафіксована відмінність заголовків
This domain, aavefinance.one, is flagged as an active brand impersonation threat targeting Aave, a decentralized finance protocol. Analysis indicates the infrastructure is designed to deploy a crypto drainer, a malicious tool that siphons cryptocurrency from victims' wallets upon interaction. The domain mimics the legitimate Aave platform, likely to deceive users into connecting their wallets or entering sensitive credentials, leading to unauthorized fund transfers. Infrastructure analysis reveals the following technical indicators: the domain was registered on March 12, 2026, through NameSilo, LLC, and currently resolves to the IP address 188.114.97.3. It is detected by 9 out of 95 security vendors on VirusTotal, with one security blocklist (PhishDestroy) already flagging it. The domain employs Cloudflare for hosting and protection, including Cloudflare Browser Insights and HTTP/3, while its SSL certificate is issued by Google Trust Services. No Google Safe Browsing (GSB) detections are recorded at this time. The domain remains active, posing an elevated risk to users of the Aave platform. While some security measures, such as blocklisting, are in place, the use of Cloudflare complicates takedown efforts and obscures the true origin of the malicious activity. Users are advised to verify domain authenticity before interacting with any DeFi platform, particularly those prompting wallet connections or private key submissions. Organizations should monitor for similar impersonation domains and update detection rules to include this infrastructure in their threat feeds.
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 10.08.2026
Хронологія виявлення
-
VirusTotal
1 → 9
-
Статус домену
Доступний → Недоступний
-
Статус домену
Недоступний → Доступний
-
Статус домену
Доступний → Недоступний
-
Статус домену
Недоступний → Доступний
-
Статус домену
Доступний → Недоступний
-
Статус домену
Недоступний → Доступний
-
Статус домену
Доступний → Недоступний
-
Статус домену
Недоступний → Доступний
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of aavefinance.one · checked Jun 26, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога