amazon-clone-khaki-eight[.]vercel[.]app
“Amazon Clone”
amazon-clone-khaki-eight.vercel.app — 内容不可用. 品牌冒充:Amazon; 诈骗类型:E Commerce Scam. 证据摘要: VirusTotal 24/95 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); URLQuery 3 alerts; URLScan malicious verdict; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 100/100. 注册商: Vercel.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain is flagged as a high-risk brand impersonation threat targeting Amazon, designed to deceive users into believing they are interacting with the legitimate Amazon platform. Analysis indicates the site employs visual and structural elements identical to Amazon’s official interface, increasing the likelihood of successful credential harvesting or fraudulent transactions. The threat type is strictly brand impersonation, with no evidence of additional payloads such as crypto drainers or malware distribution at this time. Infrastructure analysis reveals the domain resolves to IP address 216.198.79.195, geolocated within the United States under AS16509 (Amazon.com, Inc.), though this appears to be a misdirection or shared hosting artifact. The domain is registered through Vercel Inc., a legitimate hosting provider often exploited for rapid deployment of fraudulent sites. Security vendors on VirusTotal flag the domain at 24 out of 95, indicating moderate to high confidence in malicious classification. The domain appears on two security blocklists, PhishDestroy and PhishingDB, and is actively blocked by Google Safe Browsing for phishing. The SSL certificate, issued by Google Trust Services (WR1), provides encryption but does not validate legitimacy. The page title explicitly states 'Amazon Clone,' further confirming the intent to impersonate. Mitigation steps specific to this brand impersonation threat include immediate blocking of the domain and its resolving IP at the network perimeter. Organizations should update endpoint protection rules to flag or quarantine any outbound connections to this domain. Security teams are advised to monitor for credential submission attempts or unusual transaction patterns originating from internal networks. Users who may have interacted with the site should be instructed to reset passwords, enable multi-factor authentication, and review recent account activity for unauthorized changes. Given the domain’s registration under Vercel, additional scrutiny should be applied to other Vercel-hosted domains exhibiting similar naming patterns or impersonation characteristics.
安全信号
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | amazon-clone-khaki-eight.vercel.app |
malicious | Sinkholed |
| OpenDNS | amazon-clone-khaki-eight.vercel.app |
phishing | Phishing Block |
| DNS4EU | amazon-clone-khaki-eight.vercel.app |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of amazon-clone-khaki-eight.vercel.app · checked Mar 1, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。