amazon-clone-orcin-ten[.]vercel[.]app
“Amazon”
amazon-clone-orcin-ten.vercel.app — Контент недоступен. Олицетворение бренда: Amazon; Тип мошенничества: E Commerce Scam. Сводка доказательств: VirusTotal 21/95 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Certego); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 100/100. Регистратор: Vercel.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, amazon-clone-orcin-ten.vercel.app, is identified as a high-risk phishing infrastructure specifically designed for brand impersonation targeting Amazon. The site replicates Amazon's visual identity, including an identical page title ('Amazon'), to deceive users into entering credentials or financial information. No direct evidence of a crypto drainer or payment skimmer was observed, but the domain's structure and hosting align with credential harvesting campaigns commonly associated with large-scale retail impersonation schemes. Analysis reveals precise technical indicators confirming malicious intent. The domain is flagged by 21 out of 95 security vendors on VirusTotal, indicating broad detection across multiple threat intelligence platforms. It is registered through Vercel Inc. and resolves to the IP address 216.198.79.3, geolocated within the United States under AS16509 (Amazon.com, Inc.), though this appears to be a routing artifact rather than legitimate hosting. The SSL certificate is issued by Google Trust Services (WR1), a common choice for phishing sites due to its free and automated issuance process. The domain appears on two security blocklists, including PhishDestroy and PhishingDB, and remains operational as of the latest verification. Current status confirms the domain is still active, posing an ongoing risk to users. While the infrastructure has been flagged by multiple security platforms, the lack of takedown suggests either delayed enforcement or evasion tactics. Users are advised to avoid interaction with this domain and any subdomains or linked resources. Organizations should update blocklists to include this domain and its associated IP, while monitoring for similar patterns under the Vercel.app namespace. The combination of brand impersonation, active hosting, and low detection-to-blocklist ratio underscores the need for heightened scrutiny of dynamically generated subdomains on content delivery networks.
Сигналы безопасности
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 2 identified
Vercel is a cloud platform for static frontends and serverless functions.
vercel.com 100% уверенностиHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of amazon-clone-orcin-ten.vercel.app · checked Mar 1, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание