Security Scan Report: aava.pages.dev

Site favicon
Submitted: Dec 31, 2025, 8:39:33 PMCompleted: Dec 31, 2025, 8:40:39 PMpubliccompleted
Loading additional data...

Summary

This website contacted 10 IPs in 1 country across 8 domains to perform 88 HTTP transactions. The main domain is aava.pages.dev and was registered NaN years ago.

Submitted URL: https://aava.pages.dev/

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

High‑risk phishing site impersonating Aave; primary domain flagged as malicious.

Risk Factors
Malicious Indicators of Compromise on primary domain
Typosquatting / brand impersonation of Aave
Unranked domain used for a major DeFi brand
Prompt to connect wallet (credential harvesting attempt)
Domain age information unavailable

Details

Page Title

Aave - Open Source Liquidity Protocol

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

cryptocurrency blockchain

(71%)

Domain Information

The domain name 'aava.pages.dev' uses the developer-focused generic top-level domain (.dev) with subdomain 'aava'. Count 5 characters in 'pages' with 2 vowels and 3 consonants. It segments into 1 word: pages. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://aava.pages.dev/

Page Load Overview

1.69s
Total Load Time
62
HTTP Requests
2
Domains
407 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:669 chars
Detector Agreement:60%

Website Classification

Primary Category

cryptocurrency blockchain71% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

cryptocurrency blockchain
71%
finance banking
35%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
8188.114.97.3United States
AS13335CLOUDFLARENET
6142.251.141.99United States
6142.250.186.138United States
6104.16.174.226United States
AS13335CLOUDFLARENET
6104.18.20.145United States
6104.16.175.226United States
AS13335CLOUDFLARENET
6172.66.157.155United States
61.1.1.1United States
6104.18.18.237United States
6104.20.34.30United States
6210--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T10314E74ADB0011393107989AA9E7C70FB362B116E901FBBD79DD4486CFCE6F818B3656

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:5aYFrES5ZrASZ2dBt8tEGswc4AzoFkywwo1o6oyMzcQkx0C8S06wJQWZw23kN0In:5aYFrES5ZrASZ2dBt8tEGswc4AzoFkye

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:206617:AAIBQRKAOAcAQEwAJkGUAGMFSKM1IKAlw1kBLAHhQ4UUU2LYCDAQVsI9FoCAwQSVHQAWDXwEEAAEAsQ8KmNOAICAEViAqBFG

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff40007e5a7e7e00
Perceptual Hash:c0e3e28d8c87be9c
Difference Hash:0383ccd4f0f0d488
Wavelet Hash:ff40003e7e7e7e00
Color Hash:#46bf40

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data