announcement-aave[.]app
“announcement-aave.app | 522: Connection timed out”
announcement-aave.app — 未验证. 品牌冒充:Aave; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 10/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, Forcepoint ThreatSeeker); Spamhaus DBL_PHISH; 1 external blocklist match (ScamSniffer); PhishDestroy score 80/100. 注册商: Porkbun.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain announcement-aave.app was registered through Porkbun LLC on 11 December 2025 and resolves to the Cloudflare‑owned address 104.21.37.219, which is associated with AS13335 in the United States. The authoritative name servers are ajay.ns.cloudflare.com and magdalena.ns.cloudflare.com, indicating that the infrastructure is fully hosted behind Cloudflare's edge network. An SSL certificate issued by Google Trust Services (WE1) is present, confirming the use of HTTPS, but the site currently returns a 522 "Connection timed out" error, suggesting that the origin server is either unreachable or deliberately offline.
Detection engines have flagged the domain as malicious: PhishDestroy and ScamSniffer have already blocked it, and two independent security blocklists include the domain. VirusTotal reports that 12 of 93 scanned security vendors label the domain as malicious, reinforcing the suspicion that the site is part of a crypto‑related scam campaign. The page title "announcement-aave.app | 522: Connection timed out" provides the only visible indicator of the site’s status; no content has been captured for analysis because the service is offline.
The domain explicitly impersonates Aave, a well‑known decentralized finance platform, and is categorized as a crypto scam. While the precise mechanics of the fraud (e.g., phishing forms, malicious contracts, or social engineering lures) cannot be confirmed without live content, the combination of brand impersonation, Cloudflare hosting, and the detection history strongly points to an intent to deceive Aave users for financial gain.
Defenders should add announcement-aave.app to URL filtering and email security policies, continue to monitor Cloudflare‑associated IP ranges for related activity, and consider proactive takedown requests with the registrar if further evidence emerges.
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
所用技术 · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。