vishnutejaswiniravipati[.]github[.]io
“Amazon”
vishnutejaswiniravipati.github.io — Conteúdo indisponível. Representação da marca: Amazon; Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 5/91 (alphaMountain.ai, Emsisoft, Gridinsoft, Netcraft, Webroot); URLScan malicious verdict; PhishDestroy score 65/100. Registrador: GitHub.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
The domain vishnutejaswiniravipati.github.io is currently flagged as an active credential theft operation targeting Amazon users. Analysis indicates the page is designed to harvest login credentials by impersonating the legitimate Amazon platform, a tactic commonly associated with account takeover fraud and unauthorized financial transactions. The domain remains operational as of the latest assessment, posing a direct risk to users who may unknowingly submit sensitive authentication details. Infrastructure analysis reveals the domain is hosted on GitHub Pages, registered through GitHub, Inc., and resolves to the IP address 185.199.109.153, associated with AS54113 (Fastly, Inc.) in the United States. The SSL certificate is issued by Let's Encrypt (R12), a common but not exclusive indicator of legitimate hosting. The domain is flagged by 5 of 95 security vendors on VirusTotal, and appears on at least one security blocklist, specifically PhishDestroy. The page title explicitly displays 'Amazon,' reinforcing the brand impersonation strategy. No historical registration data is available, as the domain leverages GitHub's subdomain infrastructure, which does not provide traditional WHOIS records. Current risk assessment classifies this domain as high-severity due to its active status, brand impersonation of a major e-commerce platform, and direct targeting of user credentials. Users are strongly advised to avoid interacting with the domain and to verify the authenticity of any Amazon-related communications through official channels. Organizations should update web filtering policies to block access to this domain and monitor for indicators of compromise, including unusual login attempts or unauthorized transactions linked to Amazon accounts. Security teams are recommended to review logs for connections to 185.199.109.153 and correlate with other threat intelligence feeds to identify potential exposure.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 3 identified
Fastly is a cloud computing services provider. Fastly's cloud platform provides a content delivery network, Internet security services, load balancing, and video & streaming services.
www.fastly.com 100% de confiançaAnálise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo