aamazon-tolfre-nummber[.]webflow[.]io
“404 - Page not found”
Résumé des preuves
This domain is flagged as an elevated-risk brand impersonation threat targeting Amazon. Analysis indicates the infrastructure was designed to mimic legitimate Amazon services, likely to deceive users into divulging credentials, financial details, or other sensitive information. The domain exhibits multiple technical indicators consistent with fraudulent activity, including its deceptive naming convention and association with known malicious patterns. Infrastructure analysis reveals the domain resolves to IP address 172.64.151.8, hosted on Cloudflare’s network (AS13335) in the United States. It is registered through NameCheap, Inc., with a creation date of February 24, 2026, suggesting a recently established operation. Security vendors on VirusTotal flagged the domain in 17 out of 95 scans, while PhishDestroy and at least one other security blocklist have already listed it. The SSL certificate, issued by Google Trust Services (WE1), does not mitigate the risk, as fraudulent domains frequently leverage valid certificates to appear legitimate. The domain’s current status is offline, and its last known page title was '404 - Page not found,' which may indicate takedown efforts or evasion tactics. To mitigate risks associated with this brand impersonation threat, users and organizations should immediately block the domain and its associated IP address (172.64.151.8) at the network level. Security teams should monitor for any attempts to access or interact with the domain, particularly in environments where Amazon-related services are used. End-users should be educated on recognizing deceptive domain names, such as those containing misspellings or unusual subdomains, and encouraged to verify URLs before entering credentials or financial information. If any interaction with the domain occurred, affected accounts should be reviewed for unauthorized activity, and credentials should be reset as a precautionary measure. Organizations should also consider implementing domain monitoring to detect similar impersonation attempts targeting their brand or services.
Data Coverage
Signaux de sécurité
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 11/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif