aamazon-tolfre-nummber[.]webflow[.]io
“404 - Page not found”
Зведення доказів
This domain is flagged as an elevated-risk brand impersonation threat targeting Amazon. Analysis indicates the infrastructure was designed to mimic legitimate Amazon services, likely to deceive users into divulging credentials, financial details, or other sensitive information. The domain exhibits multiple technical indicators consistent with fraudulent activity, including its deceptive naming convention and association with known malicious patterns. Infrastructure analysis reveals the domain resolves to IP address 172.64.151.8, hosted on Cloudflare’s network (AS13335) in the United States. It is registered through NameCheap, Inc., with a creation date of February 24, 2026, suggesting a recently established operation. Security vendors on VirusTotal flagged the domain in 17 out of 95 scans, while PhishDestroy and at least one other security blocklist have already listed it. The SSL certificate, issued by Google Trust Services (WE1), does not mitigate the risk, as fraudulent domains frequently leverage valid certificates to appear legitimate. The domain’s current status is offline, and its last known page title was '404 - Page not found,' which may indicate takedown efforts or evasion tactics. To mitigate risks associated with this brand impersonation threat, users and organizations should immediately block the domain and its associated IP address (172.64.151.8) at the network level. Security teams should monitor for any attempts to access or interact with the domain, particularly in environments where Amazon-related services are used. End-users should be educated on recognizing deceptive domain names, such as those containing misspellings or unusual subdomains, and encouraged to verify URLs before entering credentials or financial information. If any interaction with the domain occurred, affected accounts should be reviewed for unauthorized activity, and credentials should be reset as a precautionary measure. Organizations should also consider implementing domain monitoring to detect similar impersonation attempts targeting their brand or services.
Data Coverage
Сигнали безпеки
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога