Security Scan Report: s3.eu-west-2.amazonaws.com

Redirected to: https://s3.eu-west-2.amazonaws.com/ff-south-7-console.aws.amazon.com007/Monotomicfsh.html?websrc=C5j7SsNfWvF85yXPJpiIMiSbFZEoyjUqTMbEewRwZSBC8OibRUwm6BsopPBe6fR3jJHWQ20txzv6UQjlQMvVZDxynEVejkGgLb7AF8Me6zUrtA1NKcnTPf11jIvuMDejR1cKu4qVX80Lm6lpttc8vx7qlBueF2kzKH7EnstU628GWcjcOdtz1blltdcIkdE9W9AdHdNsGVVZPgoRHdWjbw6n1MrqCIeDPNPA3SGIEeLA6aPbKA92dE7D7YmONB6yqJmuarKEeTsSY7rD2hKbPukKK3Y1laxsGyhBwZ6sMSZaL5&dispatch=572&id=724765#[email protected]

Submitted: Nov 25, 2025, 8:02:08 AMCompleted: Nov 25, 2025, 8:05:41 AMpubliccompleted
Loading additional data...

Summary

This website contacted 38 IPs in 3 countries across 7 domains to perform 30 HTTP transactions. The main domain is s3.eu-west-2.amazonaws.com.

Submitted URL: https://s3.eu-west-2.amazonaws.com/ff-south-7-console.aws.amazon.com007/Monotomicfsh.html#[email protected]

Effective URL: https://s3.eu-west-2.amazonaws.com/ff-south-7-console.aws.amazon.com007/Monotomicfsh.html?websrc=C5j7SsNfWvF85yXPJpiIMiSbFZEoyjUqTMbEewRwZSBC8OibRUwm6BsopPBe6fR3jJHWQ20txzv6UQjlQMvVZDxynEVejkGgLb7AF8Me6zUrtA1NKcnTPf11jIvuMDejR1cKu4qVX80Lm6lpttc8vx7qlBueF2kzKH7EnstU628GWcjcOdtz1blltdcIkdE9W9AdHdNsGVVZPgoRHdWjbw6n1MrqCIeDPNPA3SGIEeLA6aPbKA92dE7D7YmONB6yqJmuarKEeTsSY7rD2hKbPukKK3Y1laxsGyhBwZ6sMSZaL5&dispatch=572&id=724765#[email protected]Redirected

The Cisco Umbrella rank of the primary domain is #21 of the top 1 million websitesTop 100 Site

AI Security Verdict

Confirmed Scam

Confidence: 95%

9
Risk Score

Phishing page hosted on AWS S3 collecting credentials – confirmed scam.

Risk Factors
Cloud storage domain with credential‑harvesting fields
Password field on a storage URL
Email address in URL fragment
Brand impersonation on an AWS S3 URL
Absence of legitimate login infrastructure (no proper form detected)
Domain age information unavailable

Details

Page Title

Sign in heh account

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

You're looking at domain 's3.eu-west-2.amazonaws.com' on the commercial generic top-level domain (.com); it also runs on subdomain 's3.eu-west-2'. The core label 'amazonaws' covers 9 characters holding four vowels versus 5 consonants. Splitting it apart reveals 3 words: amazon, aw, s. Expect 2 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://s3.eu-west-2.amazonaws.com/ff-south-7-console.aws.amazon.com007/Monotomicfsh.html#alqpthgt@heh.se

Page Load Overview

0.78s
Total Load Time
30
HTTP Requests
7
Domains
256 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:298 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: dynamic
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
6104.17.24.14United States
AS13335CLOUDFLARENET
4104.16.175.226United States
AS13335CLOUDFLARENET
413.35.58.96United States
AS16509AMAZON-02
365.9.175.49United States
AS16509AMAZON-02
2104.18.11.207United States
AS13335CLOUDFLARENET
252.95.191.49London, England, United Kingdom
AS16509AMAZON-02
013.35.58.119United States
AS16509AMAZON-02
065.9.175.66United States
AS16509AMAZON-02
013.35.58.10United States
AS16509AMAZON-02
03.5.245.217London, England, United Kingdom
AS16509AMAZON-02
3038--

Content Similarity HashesFor malware variant detection

Image Hashes

Perceptual Hashes

Average Hash:0018383800000000
Perceptual Hash:88cd667633999966
Difference Hash:4db3b3b3310d1101
Wavelet Hash:113d3d3d01010101
Color Hash:#962dd2

Scan History

Scan history not available

Unable to load historical scan data