amazonitelian[.]ink
“Amazon Slots”
ملخص الأدلة
PhishDestroy identifies amazonitelian.ink as an active credential-stealing phishing domain masquerading as an Amazon login portal. This domain employs a homograph-style typo of the legitimate Amazon domain, tricking users into entering their login credentials under the guise of a routine security update. The threat type is classified as a generic phishing campaign with elevated risk, leveraging social engineering to harvest Amazon account credentials for financial fraud, account takeover, or credential stuffing attacks. No specific drainer kit or advanced obfuscation techniques were detected in this campaign, suggesting reliance on basic phishing tactics rather than sophisticated malware deployment. This domain resolves to IP 172.67.218.39 and is registered through NameSilo, LLC. VirusTotal analysis returned a detection score of 1 out of 95 security vendors, indicating low immediate detection but high potential for exploitation. The domain was created on March 22, 2026, and utilizes a Let's Encrypt SSL certificate, which may lend false credibility to unsuspecting users. Notably, no active blocklist entries were detected at the time of analysis, though this may change rapidly as reporting scales. The combination of a recently registered domain, low initial detection rates, and the use of a trusted SSL issuer highlights the deceptive nature of this campaign. As of the latest assessment, amazonitelian.ink remains active and poses an elevated risk to users who may encounter phishing links via email, SMS, or malicious advertisements. Google Safe Browsing has not yet flagged this domain, leaving it accessible to potential victims. PhishDestroy recommends immediate blocking of the domain and associated IP at the network perimeter. Users should remain vigilant for phishing lures referencing Amazon account verification, especially those delivered via unsolicited communications. Given the domain's recency and low detection footprint, the risk of widespread victimization remains significant until broader mitigation measures are implemented.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
بلاغات المجتمع
أبلغ عنه عضو واحد في المجتمع؛ شوهد أول مرة في 21/04/2026
- البلاغات المحفوظة
- 1
- عناوين URL الفريدة المبلغ عنها
- 1
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات
حُدّدت ٥ تقنيات عالية الثقة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of amazonitelian.ink · checked Apr 21, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب