amazon-clone-khaki-eight[.]vercel[.]app
“Amazon Clone”
amazon-clone-khaki-eight.vercel.app — Contenuto non disponibile. Simulazione del marchio: Amazon; Tipo di truffa: E Commerce Scam. Riepilogo delle prove: VirusTotal 24/95 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); URLQuery 3 alerts; URLScan malicious verdict; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 100/100. Registrar: Vercel.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
This domain is flagged as a high-risk brand impersonation threat targeting Amazon, designed to deceive users into believing they are interacting with the legitimate Amazon platform. Analysis indicates the site employs visual and structural elements identical to Amazon’s official interface, increasing the likelihood of successful credential harvesting or fraudulent transactions. The threat type is strictly brand impersonation, with no evidence of additional payloads such as crypto drainers or malware distribution at this time. Infrastructure analysis reveals the domain resolves to IP address 216.198.79.195, geolocated within the United States under AS16509 (Amazon.com, Inc.), though this appears to be a misdirection or shared hosting artifact. The domain is registered through Vercel Inc., a legitimate hosting provider often exploited for rapid deployment of fraudulent sites. Security vendors on VirusTotal flag the domain at 24 out of 95, indicating moderate to high confidence in malicious classification. The domain appears on two security blocklists, PhishDestroy and PhishingDB, and is actively blocked by Google Safe Browsing for phishing. The SSL certificate, issued by Google Trust Services (WR1), provides encryption but does not validate legitimacy. The page title explicitly states 'Amazon Clone,' further confirming the intent to impersonate. Mitigation steps specific to this brand impersonation threat include immediate blocking of the domain and its resolving IP at the network perimeter. Organizations should update endpoint protection rules to flag or quarantine any outbound connections to this domain. Security teams are advised to monitor for credential submission attempts or unusual transaction patterns originating from internal networks. Users who may have interacted with the site should be instructed to reset passwords, enable multi-factor authentication, and review recent account activity for unauthorized changes. Given the domain’s registration under Vercel, additional scrutiny should be applied to other Vercel-hosted domains exhibiting similar naming patterns or impersonation characteristics.
Indicatori di sicurezza
Informazioni sulla sicurezza di rete
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | amazon-clone-khaki-eight.vercel.app |
malicious | Sinkholed |
| OpenDNS | amazon-clone-khaki-eight.vercel.app |
phishing | Phishing Block |
| DNS4EU | amazon-clone-khaki-eight.vercel.app |
malicious | Sinkholed |
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Tecnologie · 2 identified
Vercel is a cloud platform for static frontends and serverless functions.
vercel.com Confidenza al 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confidenza al 100%Analisi di VirusTotal
Prove archiviate
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of amazon-clone-khaki-eight.vercel.app · checked Mar 1, 2026
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo