amazprimebox[.]com
साक्ष्य सारांश
This domain, amazprimebox.com, is actively engaged in credential phishing targeting Amazon users. Analysis indicates the site mimics legitimate Amazon login portals to harvest account credentials, payment details, and personal information. The phishing pages are designed to deceive users into entering sensitive data under the guise of account verification, order confirmation, or subscription renewal prompts. Given the domain's focus on Amazon, victims are likely lured through phishing emails, SMS, or malvertising campaigns that impersonate official Amazon communications. Infrastructure analysis reveals the domain was registered on June 17, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED. It currently resolves to the IP address 34.49.19.166 and uses a Let's Encrypt SSL certificate to present a false sense of security. VirusTotal detections show 10 out of 95 security vendors have flagged this domain as malicious, with classifications including phishing, fraud, and credential theft. No legitimate blocklist entries or sinkhole data were identified, but the domain remains operational and unmitigated as of this report. Users who have visited amazprimebox.com or entered credentials on the site should immediately revoke any submitted information. Steps include changing Amazon account passwords, enabling multi-factor authentication, and reviewing recent account activity for unauthorized transactions. Financial institutions should be notified if payment details were disclosed. Devices used to access the domain should undergo a malware scan to detect potential secondary infections, such as keyloggers or remote access trojans. Network-level blocking of the domain and its resolving IP (34.49.19.166) is recommended to prevent further exposure. Organizations should update email and web filtering rules to quarantine messages containing this domain or related phishing lures.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | amazprimebox.com |
malicious | Sinkholed |
| DNS4EU | amazprimebox.com |
malicious | Sinkholed |
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
परिणाम के संग्रहीत प्रमाण
परिणाम और टेकडाउन श्रेय
- परिणाम
redirected- उपलब्धता
reachable_redirect- कारण
http_redirect- विश्वसनीयता
- 80%
- पहला अवलोकन
- नवीनतम अवलोकन
प्रमाण SHA-256 93a999542c3f
पहचान समयरेखा
-
VirusTotal
None → 10
-
उपलब्धता
पहला संग्रहीत मान: अज्ञात
993d00c35140 -
उपलब्धता
अज्ञात → पुनर्निर्देशित
7d464041344f -
उपलब्धता
पुनर्निर्देशित → अज्ञात
d407bcf2da2b -
उपलब्धता
अज्ञात → पुनर्निर्देशित
1b97e716f587 -
उपलब्धता
पुनर्निर्देशित → अज्ञात
7cebcfd4071c -
उपलब्धता
अज्ञात → पुनर्निर्देशित
3bc0562e5745 -
उपलब्धता
पुनर्निर्देशित → अज्ञात
ca255b61650a -
उपलब्धता
अज्ञात → पुनर्निर्देशित
ff351408f8e9 -
उपलब्धता
पुनर्निर्देशित → अज्ञात
d8f7d37d7f95
सभी दिखाएँ (1)
-
उपलब्धता
अज्ञात → पुनर्निर्देशित
93a999542c3f
समुदाय रिपोर्ट
0 समुदाय सदस्य ने रिपोर्ट किया; पहली बार 28/06/2026 को देखा गया
- रिपोर्ट किए गए विशिष्ट URL
- 1
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
तकनीकें
5 उच्च-विश्वसनीयता वाली तकनीकें पहचानी गईं
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of amazprimebox.com · checked Jun 28, 2026
साइट कॉन्फ़िगरेशन विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।