aave[.]com-connect-v3-api-app[.]com
“aave.com-connect-v3-api-app.com”
证据摘要
The domain aave.com-connect-v3-api-app.com was registered on February 21, 2026 and is presently taken offline. VirusTotal scans show nine of ninety‑three security vendors flagging the domain as malicious, indicating a moderate level of confidence in its illicit nature. The page title returned by the HTTP response is identical to the domain name, offering no additional context. The site is classified as a crypto‑related scam and explicitly impersonates the Aave brand, as indicated by the supplied brand target field.
Blocklist coverage includes PhishDestroy and ScamSniffer, and the domain appears on two additional public blocklists, reinforcing its reputation as a threat vector. No public information on the hosting provider, IP address, autonomous system number, or TLS certificate has been disclosed, and the HTTP status code at the time of analysis is not available beyond the offline indication. The limited artifact set suggests the operator intended to lure cryptocurrency users by referencing Aave’s name, but the lack of a live payload prevents a deeper technical assessment of phishing pages, credential‑stealing forms, or malicious binaries.
Defenders should ensure that the fully qualified domain is added to network‑level deny lists, DNS sinkhole rules, and endpoint web‑filter policies. Continuous monitoring of newly registered domains that combine the target brand’s name with atypical sub‑domains (e.g., “‑connect‑v3‑api‑app”) is recommended to catch future impersonation attempts before they become active. Sharing the domain’s attributes with threat‑intelligence platforms will also improve community‑wide detection capability.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控