aun-ali-12[.]github[.]io
“Site not found · GitHub Pages”
Resumo das evidências
The domain aun-ali-12.github.io has been identified as a source of generic phishing attacks targeting unsuspecting users. It does not appear to be associated with any well-known brand or a specific drainer kit, but it leverages GitHub's hosting services to create a malicious environment aimed at harvesting sensitive credentials through deceptive means.
Technical analysis reveals that this domain is flagged by 18 out of 95 security vendors on VirusTotal, marking it as highly suspicious. It resolves to the IP address 185.199.109.153 and is registered through GitHub, Inc. The domain employs a Let's Encrypt SSL certificate to appear legitimate. It has been blocked by reputable phishing blocklists such as OpenPhish and PhishingDB. Currently, it appears on two separate security blocklists. Although the exact creation date is not provided, the domain remains active and continues to pose a significant threat.
As of now, aun-ali-12.github.io remains active and accessible, increasing the risk to internet users. Security teams and end users are advised to continue blocking access and monitor for any phishing attempts linked to this domain. Given its high detection rate and presence on multiple blocklists, interaction with this domain should be strictly avoided. Prompt reporting to security platforms and updating web filters will help mitigate further exposure.
Data Coverage
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | aun-ali-12.github.io |
malicious | Sinkholed |
| DNS4EU | aun-ali-12.github.io |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 11/08/2026
10 fontes externas monitoradas Sem correspondência
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of aun-ali-12.github.io · checked Apr 16, 2026
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo