Lompat ke laporan keamanan
⚠️
Domain ini telah ditandai sebagai berbahaya
Mesin keamanan melaporkan deteksi: 1. Berhati-hatilah — jangan memasukkan kredensial atau informasi pribadi.
Keamanan domain dan intelijen ancaman

s3-external-2[.]amazonaws[.]com

“Cloud Object Storage – Amazon S3 – Amazon Web Services”

Putusan ancaman Kritis 71/100 skor bukti
Ketersediaan Terakhir diketahui aktif Pengamatan keterjangkauan tersimpan terbaru
Deteksi Total Virus: 1/91 URLQuery threat systems: 1 alert Peniruan identitas merek: Amazon Terakhir diketahui aktif
15/06/2026 Amazon
Ringkasan bukti
KRITIS
Skor
71/100

This domain, s3-external-2.amazonaws.com, is currently flagged as a high-risk phishing infrastructure targeting cloud storage users. Analysis indicates the domain mimics legitimate Amazon S3 endpoints, presenting a page titled 'Cloud Object Storage – Amazon S3 – Amazon Web Services' to deceive visitors. The domain was registered on May 11, 2026, through MarkMonitor Inc., and resolves to the IP address 52.217.165.43, located in the AWS us-east-1 region. While the SSL certificate is issued to Amazon under the Amazon RSA 2048 M04 authority, this does not confirm legitimacy, as certificates can be misused or spoofed in phishing operations. Infrastructure analysis reveals the domain is hosted on AWS nameservers, including ns-1321.awsdns-37.org and ns-1670.awsdns-16.co.uk, which aligns with legitimate Amazon S3 configurations. However, the domain appears on one security blocklist and is flagged by a single vendor on VirusTotal, suggesting detection is still emerging. The HTTP status code 307, indicating a temporary redirect, may be used to reroute victims to malicious payloads or credential harvesting pages. The Gridinsoft trust score of 0/100 further corroborates the domain's suspicious nature, though this metric alone does not provide conclusive evidence of intent. What remains uncertain is the exact payload or end goal of this phishing operation. The domain could be part of a broader campaign to distribute malware, harvest AWS credentials, or exfiltrate sensitive data under the guise of legitimate cloud storage interactions. Defenders should treat this domain as actively malicious and prioritize blocking it at the network level. Monitoring for connections to 52.217.165.43 or related AWS S3 endpoints with similar naming patterns is recommended. Organizations using AWS should verify any unexpected redirects or storage bucket interactions originating from this domain, as it may indicate compromise or targeted phishing attempts.

VirusTotal
VirusTotal
1 det.
URLQuery
URLQuery
1 threat alert
Sertifikat TLS
Amazon / Amazon RSA 2048 M04
Usia
3 mo
Status terpantau
Terakhir diketahui aktif 307
PhishDestroy
Daftar Hapus
Terdaftar
Cakupan data VirusTotal 1 / 91 URLQuery 1 threat-system alert PhishStats tidak diperiksa OTX no community references CF Radar no data URLScan capture not submitted URLScan verdict putusan tidak tersedia Pemblokiran DNS tidak diperiksa TLS valid certificate, 75d WHOIS 3 mo old Tangkapan layar stored capture Rantai pengalihan tidak diselidiki
Intelijen Keamanan Jaringan
Threat Detection Systems 1 alert
Detection System Indicator Verdict Alert
Hagezi Threat Feed s3-external-2.amazonaws.com malicious Sinkholed

Alur Tanggapan Ancaman Pipeline

Penemuan
Checks
Reports
Ketersediaan
7/9

Cakupan daftar blokir

10 sumber · disinkronkan 10/08/2026

Tangkapan tersimpan

Judul Halaman
Cloud Object Storage – Amazon S3 – Amazon Web Services
Sertifikat TLS
Valid transport encryption · Diterbitkan oleh Amazon / Amazon RSA 2048 M04 · valid for 75 days

Intelijen Domain

Domain
Server / ASN Server · AS16509 Amazon.com, Inc.
Reputasi IP abuse score 0/100 0 reports checked 13/07/2026
Registrar (base domain) MarkMonitor
Alamat IP 52.217.165.43 US
LokasiUS Ashburn, US
JaringanAS16509 · AWS S3 (us-east-1)
Registration (base domain)amazonaws.com · Dibuat 11/05/2026 (90d)
Status HTTP307 Temporary Redirect
Detail teknisDNS, nama TLS, dan stempel waktu
Pertama Kali Terdeteksi15/06/2026
Server namans-967.awsdns-56.net
Sidik jari TLS
Pengamatan TLSberlaku sejak 09/04/2026dipindai 11/05/2026
Nama alternatif subjek TLSs3-external-1.amazonaws.com
ICANN OVERSIGHT Registration: amazonaws.com

Akreditasi dan konteks RAA

Registrar accreditation and DNS abuse obligations

For the registrable domain amazonaws.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Tidak ada yang dikirim secara otomatis.
Laporkan Domain Ini Kirimkan bukti & bantu lindungi orang lain

Analisis VirusTotal

1 / Vendor keamanan 91 menandai domain ini
View on VT
Last analyzed Previous stored snapshot: 1 detection
MalwareURL

Apakah Anda Terpengaruh oleh Situs Ini?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.

Europol
Temukan saluran pelaporan resmi untuk negara UE Anda
National police directory
Waspadalah terhadap penipu yang mengatasnamakan pemulihan! Penjahat dapat menghubungi korban lagi sambil berpura-pura menjadi penyelidik, pengacara, atau agen pemulihan. Jangan membayar biaya di muka atau membagikan kredensial. Pelajari lebih lanjut tentang penipuan dalam proses pemulihan →

Laporkan kepada Pihak Berwenang di Daerah Anda

Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.

Direktori 97 negara
Draf yang dibantu AI — detail insiden diproses oleh penyedia AI Tinjau dan kirimkan sendiri

Periksa Domain Apa Pun

Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik

Pindai Sekarang

Laporkan Phishing

Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas

Laporan

Pemberitahuan Ancaman Real-Time

Laporan phishing terbaru dan perubahan ketersediaan yang diamati

Pantau

Tetap Terinformasi, Tetap Aman

Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive

Pemberitahuan Ancaman Real-Time Ajukan Banding Terhadap Iklan Ini

Alat eksternal

HTML · IFRAME

Sematkan Laporan Ini

Bagikan informasi ancaman ini di situs web atau blog Anda

embed.html
<iframe
  src="https://phishdestroy.io/id/embed/domain/s3-external-2.amazonaws.com"
  title="PhishDestroy threat report for s3-external-2.amazonaws.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Surat Terima Kasih yang Sangat Tulus

Pembuat draf satir

Penerima
Konteks biaya

Draf satir. Angka biaya merupakan perkiraan; tidak diklaim bahwa angka tersebut secara tepat terkait dengan domain ini.