amazon-master[.]vercel[.]app
Проверка домена amazon-master.vercel.app на фишинг и безопасность
“Amazon”
amazon-master.vercel.app — Последний известный активный (HTTP 200). Олицетворение бренда: Amazon; Тип мошенничества: E Commerce Scam. Сводка доказательств: VirusTotal 19/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Cluster25); URLQuery 15 det.; CF Radar malicious; PhishDestroy score 100/100. Регистратор: Tucows.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, amazon-master.vercel.app, was registered on 21 February 2026 through Tucows Domains Inc. The authoritative name servers are ns1.vercel-dns-3.com through ns4.vercel-dns-3.com. DNS resolution points to IP address 216.198.79.3, which belongs to ASN 16509 owned by Amazon.com, Inc., and is geolocated in the United States. The site presents an HTTP 200 response and serves an SSL certificate issued by Google Trust Services under the WR1 profile, indicating a valid TLS handshake. The page title returned by the server is “Amazon”, and the brand target is explicitly listed as Amazon, confirming a brand‑impersonation motive. Automated analysis identified a stack that includes Bootstrap, React, jQuery, cdnjs, Stripe, Vercel, and Cloudflare, and the response contains an HSTS header, suggesting intentional use of modern web frameworks to increase credibility.
VirusTotal records show that 23 of 93 security vendors have flagged the domain, and the domain appears on a single external blocklist. PhishDestroy has already added the domain to its block list, reinforcing the detection. Reputation services assign extremely low trust scores—Scamadviser 1 / 100 and Gridinsoft 0 / 100—consistent with an e‑commerce scam classification. The risk rating is high and the campaign status remains active. Current uncertainties include the exact content served to victims, the presence of credential‑collection forms, and any downstream command‑and‑control infrastructure, because no visual analysis of the page has been performed.
Defenders should block both the domain and the underlying IP address, enforce DNS‑level filtering for any sub‑domains under vercel‑dns-3.com, and monitor outbound traffic to the identified IP. Given the use of Stripe libraries, there is a possibility of fraudulent payment page hosting, which further elevates the impact potential. Organizations should also inspect any outbound connections to the Vercel infrastructure for anomalous activity.
Сигналы безопасности
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 8 identified
Popular CSS framework for responsive, mobile-first web development.
Cloud platform for frontend deployment, optimized for Next.js.
Payment processor — credit card and alt-payment acceptance.
stripe.comJavaScript library for building user interfaces with component-based architecture.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comFast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Анализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of amazon-master.vercel.app · checked Mar 1, 2026
Анализ конфигурации сайта
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание