This domain, aramex.com-aodnt.life, was observed on a security blocklist and is currently listed by PhishDestroy as active. DNS resolution returns the IPv4 address 104.21.74.213; however, the authoritative name server query returns NS_NOT_FOUND, indicating that standard NS records are unavailable or misconfigured. The domain has been scanned by VirusTotal, where 91 AV engines evaluated the site and none reported a detection, but this absence of alerts does not constitute a safety guarantee.
The presence on a blocklist suggests that prior telemetry flagged the domain for malicious use, consistent with the generic phishing classification provided. No additional technical artifacts such as SSL certificate details, HTTP status codes, page titles, or brand references are available from the current intelligence set. Consequently, the confidence in the phishing intent relies primarily on the blocklist entry and the hosting IP, which belongs to a cloud service provider often leveraged for rapid provisioning of malicious infrastructure.
Defenders should consider adding the domain and its resolved IP address to outbound filtering rules, monitoring DNS queries for the domain, and employing threat‑intelligence feeds that include the reported blocklist. Ongoing observation is recommended to capture any future changes in hosting, DNS configuration, or detection outcomes.