attractive-states-704494[.]framer[.]app
“Dropbox”
attractive-states-704494.framer.app — المحتوى غير متوفر. نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 21/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); URLQuery 4 alerts; PhishDestroy score 100/100. مسجّل النطاق: Framer.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy identifies attractive-states-704494.framer.app as an active fake investment scam site under investigation for phishing activities. The domain is currently unresolved by VirusTotal with 21/95 detections, indicating it has evaded immediate automated detection despite being listed on three security blocklists: OpenPhish, PhishingArmy, and OISD. This domain resolves to IP 31.43.160.6 and uses a Let's Encrypt SSL certificate, which may lend false credibility to unsuspecting users. The absence of detections on VirusTotal suggests a need for manual review and proactive blocking by security teams. This domain was flagged by security researchers due to its association with fraudulent investment schemes, specifically targeting individuals seeking financial opportunities. Key technical indicators include its recent creation date (exact date undisclosed), resolution to a high-risk IP address (31.43.160.6), and the use of a widely trusted but easily obtainable SSL certificate. Trust scores are critically low, as evidenced by its presence on three prominent blocklists. The combination of these factors—low detection rates, high-risk hosting, and known phishing associations—elevates the risk profile of this domain to an active threat requiring immediate attention. To mitigate exposure to this fake investment scam, organizations and individuals should implement domain blocking for attractive-states-704494.framer.app and IP 31.43.160.6 at the network perimeter. Security teams should configure firewalls, DNS filters, and endpoint protection to block traffic to this domain. Additionally, users should be warned against engaging with unsolicited investment offers or clicking links from unknown sources. Immediate reporting to cybersecurity platforms like OpenPhish or PhishingArmy can help improve detection rates and prevent further victimization. Proactive monitoring for similar domains using the same IP or SSL certificate is also recommended to identify related fraudulent activities.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | attractive-states-704494.framer.app |
malicious | Sinkholed |
| Cloudflare DNS | attractive-states-704494.framer.app |
malicious | Sinkholed |
| OpenDNS | attractive-states-704494.framer.app |
phishing | Phishing Block |
| DNS4EU | attractive-states-704494.framer.app |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of attractive-states-704494.framer.app · checked Apr 6, 2026
الأدلة والتقارير الخارجية
PD-20260406-EB93FD Recipient: abuse@framer.com هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب