unreal-employee-605361[.]framer[.]app
“My Framer Site”
unreal-employee-605361.framer.app — المحتوى غير متوفر. انتحال العلامة التجارية: Eastlinkca; نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 20/91 (Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); URLQuery 2 alerts; URLScan malicious verdict; PhishDestroy score 95/100. مسجّل النطاق: Framer.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain is flagged as a credential phishing site designed to harvest login credentials from unsuspecting users. Analysis indicates the site presented a generic page titled 'My Framer Site,' a common tactic to mimic legitimate login portals while avoiding immediate suspicion. The infrastructure was hosted on Framer’s platform, a service often abused for rapid deployment of phishing pages due to its ease of use and free SSL certificates. Infrastructure analysis reveals the domain resolved to IP 31.43.161.6, located in the Netherlands under Amazon’s AS16509. The SSL certificate was issued by Let’s Encrypt (YE1), a detail consistent with many phishing campaigns leveraging free certificates to appear legitimate. At the time of detection, 20 out of 95 security vendors on VirusTotal flagged the domain as malicious, and it appeared on at least one security blocklist. The domain has since been taken offline, but its prior activity aligns with known phishing patterns targeting corporate or personal credentials. If you visited unreal-employee-605361.framer.app or entered any login details, immediately change the passwords for all accounts accessed from the same device or network. Enable multi-factor authentication where available to mitigate unauthorized access. Monitor accounts for unusual activity, such as unrecognized logins or transactions. If the site was accessed on a work device, report the incident to your organization’s security team for further investigation. Avoid reusing passwords across multiple services to limit potential exposure from credential theft.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | unreal-employee-605361.framer.app |
malicious | Sinkholed |
| OpenDNS | unreal-employee-605361.framer.app |
phishing | Phishing Block |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
تحليل VirusTotal
الأدلة والتقارير الخارجية
PD-20260611-538E19 Recipient: abuse@framer.com هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب