amazon-clone-orcin-ten[.]vercel[.]app
“Amazon”
amazon-clone-orcin-ten.vercel.app — Conteúdo indisponível. Representação da marca: Amazon; Tipo de golpe: E Commerce Scam. Resumo das evidências: VirusTotal 21/95 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Certego); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 100/100. Registrador: Vercel.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, amazon-clone-orcin-ten.vercel.app, is identified as a high-risk phishing infrastructure specifically designed for brand impersonation targeting Amazon. The site replicates Amazon's visual identity, including an identical page title ('Amazon'), to deceive users into entering credentials or financial information. No direct evidence of a crypto drainer or payment skimmer was observed, but the domain's structure and hosting align with credential harvesting campaigns commonly associated with large-scale retail impersonation schemes. Analysis reveals precise technical indicators confirming malicious intent. The domain is flagged by 21 out of 95 security vendors on VirusTotal, indicating broad detection across multiple threat intelligence platforms. It is registered through Vercel Inc. and resolves to the IP address 216.198.79.3, geolocated within the United States under AS16509 (Amazon.com, Inc.), though this appears to be a routing artifact rather than legitimate hosting. The SSL certificate is issued by Google Trust Services (WR1), a common choice for phishing sites due to its free and automated issuance process. The domain appears on two security blocklists, including PhishDestroy and PhishingDB, and remains operational as of the latest verification. Current status confirms the domain is still active, posing an ongoing risk to users. While the infrastructure has been flagged by multiple security platforms, the lack of takedown suggests either delayed enforcement or evasion tactics. Users are advised to avoid interaction with this domain and any subdomains or linked resources. Organizations should update blocklists to include this domain and its associated IP, while monitoring for similar patterns under the Vercel.app namespace. The combination of brand impersonation, active hosting, and low detection-to-blocklist ratio underscores the need for heightened scrutiny of dynamically generated subdomains on content delivery networks.
Sinais de segurança
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 2 identified
Vercel is a cloud platform for static frontends and serverless functions.
vercel.com 100% de confiançaHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaAnálise do VirusTotal
Evidências arquivadas
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of amazon-clone-orcin-ten.vercel.app · checked Mar 1, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo