Analysis conducted on July 30, 2026, identifies fuchsia-graphs-773214.framer.app as an active phishing domain specializing in social engineering attacks. The domain was registered through Framer B.V., a legitimate platform often exploited for hosting malicious content due to its ease of deployment and free-tier availability. Google Safe Browsing has explicitly flagged this domain for social engineering, indicating it is designed to deceive users into divulging sensitive information or performing harmful actions. Infrastructure analysis reveals the domain resolves to the IP address 31.43.161.6, though no nameserver records were found, which may suggest incomplete or obfuscated DNS configuration. Detection metrics further corroborate the malicious nature of this domain.
As of the latest scan, 17 out of 91 security vendors on VirusTotal have flagged the domain, reflecting moderate but consistent detection across multiple threat intelligence sources. The domain also appears on two security blocklists, including PhishDestroy and OpenPhish, both of which specialize in real-time phishing threat identification. Despite these indicators, the domain remains operational, posing an ongoing risk to users. The exact content and target of the phishing campaign hosted on this domain have not yet been fully analyzed.
However, the classification as a social engineering threat suggests it may attempt to impersonate a trusted entity or service to manipulate victims. Defenders are advised to block the domain at the network level and monitor for any connections to the associated IP address 31.43.161.6. Organizations should also consider integrating the domain and IP into their threat intelligence feeds for proactive defense. Given the domain's registration under a legitimate hosting provider, takedown efforts may require direct coordination with Framer B.V. to mitigate further abuse.