auvex[.]one
Evidence Summary
The domain auvex.one is currently active and hosts a generic phishing page. DNS resolution points to Cloudflare’s edge address 104.21.46.175 and the zone is delegated to grace.ns.cloudflare.com and marek.ns.cloudflare.com. The site presents a TLS certificate issued by Google Trust Services under the WE1 authority, indicating a valid HTTPS endpoint. An HTTP request returns a 403 status code and the page title is “Just a moment…”, which matches the observed indicator set. The domain is listed on three public phishing blocklists and is actively blocked by the PhishDestroy, MetaMask, and SEAL filters. Registration information shows the domain was purchased through NameSilo, LLC. The infrastructure resides in Cloudflare’s network in Canada. Although recent VirusTotal analysis involving 91 scanning engines has not produced any detections, the presence on multiple blocklists and the observed behavior confirm malicious intent. Defenders should add auvex.one to DNS‑ and URL‑filtering rules, monitor for any C‑NAME or IP changes, and consider enforcing TLS inspection to capture any payload that may be delivered after the initial 403 response. Continuous threat‑intel feeds should be consulted for updates, and any user‑facing applications that rely on external content should be hardened against potential credential‑stealing redirects from this domain.
Data Coverage
Network Security Intelligence
Threat Response Pipeline
Blocklist coverage
10 monitored external feeds · stored snapshot Aug 11, 2026
8 monitored external feeds No match
Domain Intelligence
Technical detailsDNS, TLS names and timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies
3 high-confidence technologies identified
VirusTotal Analysis
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of auvex.one · checked Jul 20, 2026
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive