# amazon-clone-swart-kappa.vercel.app — MALICIOUS > Beware: amazon-clone-swart-kappa.vercel.app hosts a fake Amazon login page acting as a crypto drainer. Verify URLs on PhishDestroy before entering credentials. ## Summary PhishDestroy identifies amazon-clone-swart-kappa.vercel.app as an active phishing domain engineered to impersonate Amazon’s login interface, likely deployed to harvest credentials and drain cryptocurrency wallets. This domain resolves to IP address 64.29.17.3 and is currently accessible via a Vercel subdomain, suggesting rapid deployment via a legitimate cloud provider. The threat is elevated due to its use of a Google Trust Services SSL certificate, which may lull victims into a false sense of security by displaying a padlock icon in browsers. This domain has been flagged by 19 out of 95 security vendors on VirusTotal, placing it in the top quartile of detected malicious domains. It is registered through Vercel Inc., a platform often abused for disposable phishing infrastructure due to its fast provisioning and free tier. Additionally, the domain is listed on one public blocklist, indicating prior detection by threat intelligence systems. While the domain is relatively young, its integration into known phishing campaigns—particularly those targeting Amazon users—highlights a coordinated effort to compromise login credentials and associated financial data. Users who have visited this domain should immediately check their devices for unauthorized browser extensions, review wallet transaction histories, and change passwords used on Amazon or other e-commerce platforms. Enable two-factor authentication where available and run a full antivirus scan. If credentials were entered, revoke active sessions on Amazon and monitor linked payment methods for unauthorized transactions. For further verification, use PhishDestroy’s real-time URL checker to confirm the legitimacy of any Amazon login page before entering sensitive information. ## Threat Details - Verdict: MALICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registrar: Vercel Inc. - IP: 64.29.17.3 ## Detection Status - VirusTotal: 19 vendors flagged - Google Safe Browsing: clean - Blocklists: 1 hits Lists: ["OpenPhish"] ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/671daed6-fca2-4b8c-9508-e1821f79ab80 - PhishDestroy: https://phishdestroy.io/domain/amazon-clone-swart-kappa.vercel.app/ - LLM endpoint: https://phishdestroy.io/domain/amazon-clone-swart-kappa.vercel.app/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/amazon-clone-swart-kappa.vercel.app/ Last updated: 2026-03-27