vote-aerodrome[.]live
vote-aerodrome.live — 内容不可用 (HTTP 502). 诈骗类型:Generic Phishing. 证据摘要: VirusTotal 4/91 (alphaMountain.ai, CRDF, Gridinsoft, SOCRadar); URLQuery 2 alerts; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 83/100. 注册商: PDR.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies vote-aerodrome.live as a confirmed phishing domain hosting a fake voting portal, likely targeting cryptocurrency or token holders by impersonating Aerodrome Finance. This domain masquerades as a legitimate platform to harvest login credentials and sensitive financial data under the guise of governance participation. The threat is active and operational, with no current detections on VirusTotal despite clear malicious intent. The domain vote-aerodrome.live was registered on June 16, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com. It resolves to IP address 188.114.97.3 and currently shows 2 out of 95 VirusTotal detections. While not yet blacklisted, this domain remains untrusted with no positive reputation indicators. The recent registration date combined with the spoofed branding (Aerodrome Finance) indicates a likely opportunistic attack targeting crypto communities during periods of high governance activity. This threat type—brand impersonation phishing—employs urgency and false legitimacy to trick users into entering wallet addresses or credentials. Indicators include the domain name (containing 'aerodrome'), suspicious IP reputation (188.114.97.3 associated with multiple low-trust domains), and zero detections on leading scanners. Users must avoid accessing this domain, verify URLs via official sources, enable wallet or platform alerts for unusual transactions, and report suspicious links to their crypto wallet or exchange. Platforms should consider proactive takedown requests given the low VT score and high risk of credential theft.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | vote-aerodrome.live |
malicious | Sinkholed |
| DNS4EU | vote-aerodrome.live |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 分析
证据与外部报告
PD-20260624-9280E0 Recipient: abuse@publicdomainregistry.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。