kartiksinghks2005-arch[.]github[.]io
“Amazon”
kartiksinghks2005-arch.github.io — Konten tidak tersedia. Peniruan identitas merek: Amazon; Jenis penipuan: Generic Phishing. Ringkasan bukti: VirusTotal 8/91 (alphaMountain.ai, Emsisoft, G-Data, Gridinsoft, MalwareURL); PhishDestroy score 74/100. Registrar: GitHub.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
This domain, kartiksinghks2005-arch.github.io, is flagged as a high-risk phishing resource impersonating Amazon. Analysis indicates the page title explicitly mimics the legitimate Amazon website, suggesting an intent to deceive users into submitting login credentials, payment details, or other sensitive information. No specific drainer kit signatures have been identified, but the generic phishing classification aligns with common credential harvesting tactics. Infrastructure analysis reveals the domain resolves to IP address 185.199.109.153, hosted under AS54113 (Fastly, Inc.) in the United States. The domain is registered through GitHub, Inc., leveraging a Let's Encrypt SSL certificate (R12) to present a false sense of security. VirusTotal reports 8 out of 95 security vendors flagging this domain as malicious, while it appears on one additional security blocklist. The page remains active, with no evidence of takedown or sinkholing at the time of analysis. Current status confirms the domain is still operational, posing an ongoing risk to users. Response actions should include immediate blacklisting in enterprise security tools, DNS filtering, and endpoint protection rules. Organizations are advised to monitor for connections to 185.199.109.153 and alert on any user interactions with the domain. Despite partial vendor detection, the remaining risk is classified as high due to the active status and brand impersonation of a major e-commerce platform. Users should verify domain authenticity before entering credentials and report suspicious activity to security teams.
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Teknologi · 3 identified
Fastly is a cloud computing services provider. Fastly's cloud platform provides a content delivery network, Internet security services, load balancing, and video & streaming services.
www.fastly.com Keyakinan 100%Analisis VirusTotal
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive