aulive[.]sspl[.]com[.]auaulive[.]sspl[.]com[.]au
“Index of /”
aulive.sspl.com.auaulive.sspl.com.au — 未验证. 品牌冒充:Google; 诈骗类型:Credential Phishing. 证据摘要: VirusTotal 15/95 (ADMINUSLabs, BitDefender, CyRadar, ESET, Forcepoint ThreatSeeker); Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 100/100. 注册商: Web Address Registrati….
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, aulive.sspl.com.au, operates as a credential theft platform designed to harvest user login credentials through deceptive web pages. Analysis indicates the site mimics legitimate authentication portals, presenting users with fraudulent login forms to capture usernames, passwords, and potentially multi-factor authentication codes. The infrastructure is optimized for rapid deployment and evasion, leveraging a directory listing (Index of /) to host malicious payloads or redirect scripts without raising immediate suspicion. The threat extends beyond individual compromise, as stolen credentials are frequently aggregated and sold in underground markets, enabling secondary attacks such as account takeovers, financial fraud, or corporate espionage. Infrastructure analysis reveals concrete indicators of malicious intent. The domain is flagged by 15 out of 95 security vendors on VirusTotal, including detections for phishing and credential harvesting. It appears on two security blocklists, PhishDestroy and PhishingDB, further corroborating its fraudulent nature. The domain resolves to IP address 185.184.154.169, hosted under AS38719 (Dreamscape Networks Limited) in Australia, a network segment historically associated with high-risk activity. The SSL certificate, issued by Let's Encrypt (R12), is valid but does not mitigate the underlying threat, as automated issuance is commonly exploited by attackers to lend superficial legitimacy. Registration details point to Web Address Registration Pty Ltd as the registrar, though no creation date is provided, limiting temporal analysis. The page title, Index of /, suggests an exposed directory structure, often indicative of misconfigured or intentionally compromised servers used to distribute malicious content. Users who visited aulive.sspl.com.au should take immediate remedial action to mitigate potential compromise. First, terminate all active sessions on devices that accessed the domain and clear browser caches to remove residual scripts or tracking elements. Reset passwords for any accounts entered on the site, prioritizing email, financial, and work-related credentials, and enable multi-factor authentication where available. Monitor linked accounts for unauthorized activity, such as logins from unfamiliar locations or devices, and review recent transactions for anomalies. If corporate or sensitive data was exposed, notify relevant security teams to initiate incident response protocols. Given the domain's high-risk classification and offline status, users should remain vigilant for follow-up attacks, such as phishing emails or SMS messages, which may reference the initial compromise to lend credibility.
安全信号
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of aulive.sspl.com.auaulive.sspl.com.au · checked Mar 2, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。