ab2b8199-087a-4833-ad46-5f5354260933[.]botmetis[.]com
“CRYPW”
ab2b8199-087a-4833-ad46-5f5354260933.botmetis.com — Прикритий · доступний. Уособлення бренду: Aave; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 12/91 (ChainPatrol, BitDefender, CRDF, CyRadar, Forcepoint ThreatSeeker); cloaking observed; PhishDestroy score 86/100. Реєстратор: Dynadot.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain is flagged for elevated risk due to brand impersonation, specifically targeting the decentralized finance protocol Aave. Analysis indicates the domain was designed to deceive users by mimicking official Aave interfaces, likely to harvest credentials or facilitate unauthorized transactions under the guise of legitimate services.
Infrastructure analysis reveals the domain ab2b8199-087a-4833-ad46-5f5354260933.botmetis.com was registered on June 25, 2024, through Dynadot LLC. It resolves to the IP address 104.21.2.134 and employs technologies such as Vue.js, Cloudflare, and HTTP/3. Security vendor detections on VirusTotal stand at 3 out of 95, while Gridinsoft assigns a trust score of 0/100. The domain appears on one security blocklist and is currently offline. The SSL certificate is issued by Let's Encrypt, and the page title was identified as "CRYPW."
Mitigation steps for this type of threat include immediate blocking of the domain and its resolving IP (104.21.2.134) at the network perimeter. Organizations should deploy indicators of compromise (IOCs) such as the domain, IP, and associated SSL certificate fingerprints into security monitoring systems. User awareness training should emphasize verifying domain authenticity, particularly for decentralized finance platforms, and reporting suspicious URLs. Additionally, implementing multi-factor authentication and transaction signing for financial applications can reduce the impact of credential theft or unauthorized access.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: botmetis.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain botmetis.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 4 identified
Vue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org 100% впевненостіCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of ab2b8199-087a-4833-ad46-5f5354260933.botmetis.com · checked Jun 27, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога