checker-auki[.]com
ملخص الأدلة
The domain checker-auki.com was registered on February 27, 2026 through NiceNIC International Group Co., Limited and is currently resolved to the Cloudflare‑hosted address 104.21.74.229 (AS13335, United States). DNS resolution uses the authoritative Cloudflare nameservers adam.ns.cloudflare.com and danica.ns.cloudflare.com, indicating that the operator leveraged Cloudflare’s edge services to hide the origin infrastructure. The site presented a single HTTP response with status code 403 and a page title of "Just a moment...", a pattern commonly observed in automated challenge pages that attempt to deter automated analysis. The TLS certificate is issued by Let’s Encrypt (E7), confirming the use of a publicly trusted certificate without custom validation. The presence of HTTP/3 support further reflects the use of modern Cloudflare features.
Security tooling has flagged the domain on three separate blocklists, and it is actively blocked by the PhishDestroy, MetaMask, and SEAL filtering services. VirusTotal analysis shows three of ninety‑three scanning vendors returned a positive detection, reinforcing the suspicion of malicious activity despite a relatively low overall detection ratio. No additional contextual information such as a targeted brand, specific phishing kit, or detailed page content has been disclosed, leaving the exact payload or credential‑stealing mechanism unconfirmed. Defenders should treat checker-auki.com as a confirmed phishing indicator.
Network‑level controls can block DNS resolution to the domain or the associated IP range, and web‑gateway filters should enforce the blocklists that already list the domain. Since the site is hosted behind Cloudflare, any takedown request must be directed through Cloudflare’s abuse reporting channel, citing the observed 403 response, page title, and detection by multiple security products.
Data Coverage
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | checker-auki.com |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 10/08/2026
المخطط الزمني للاكتشاف
-
Cloudflare Radar
تم حفظ فحص Cloudflare Radar · فتح الفحص
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات
حُدّدَت تقنيتان عاليتا الثقة
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب