gwge49x[.]website
On July 22, 2026, an analysis was performed for the domain gwge49x.website. The domain was registered through URL Solutions Inc. on July 05, 2025 and is currently marked as offline. DNS configuration shows a single nameserver, indicating a minimal infrastructure footprint. The site presented an SSL certificate labeled R11; the certificate details have not been publicly disclosed, but the presence of a certificate suggests an attempt to lend legitimacy.
Gridinsoft’s trust scoring system assigned a score of 0 out of 100, reflecting a classification as highly untrusted. The domain is listed as an impersonation of the Amazon brand, matching the provided brand‑target field. VirusTotal analysis recorded a single positive detection out of 95 scanned security vendors, confirming that at least one vendor identified malicious behavior. The domain is also present on one external blocklist and has been actively blocked by the PhishDestroy service, reinforcing its status as a known malicious resource.
No additional evidence such as page titles, HTTP response bodies, or hosting IP information is available, leaving the exact payload or phishing kit undefined. Defenders should continue to block gwge49x.website at perimeter devices, DNS resolvers, and web filtering solutions. Monitoring of the registrar URL Solutions Inc. for any future re‑registration attempts is advisable, and threat‑intel feeds should retain the indicator for correlation with any subsequent activity. Given the low trust score, the single vendor detection, and the confirmed brand impersonation, the domain should be treated as a high‑confidence phishing indicator despite its offline state.
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive