novbil[.]framer[.]website
“Site Not Found | Framer”
novbil.framer.website — Inhalt nicht verfügbar (HTTP 404). Zusammenfassung der Beweislage: VirusTotal 14/93 (ADMINUSLabs, alphaMountain.ai, CRDF, CyRadar, ESET); Spamhaus DBL_PHISH; PhishDestroy score 92/100. Registrar: CSC.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
The domain novbil.framer.website was registered on 21 February 2026 through CSC Corporate Domains, Inc. Its authoritative name servers are part of the Amazon Route 53 pool (ns-1243.awsdns-27.org, ns-1818.awsdns-35.co.uk, ns-336.awsdns-42.com, …). DNS resolution points to the Amazon‑owned address 35.71.142.77, which is announced by AS16509 (Amazon.com, Inc.) and located in the United States. An SSL certificate labeled “E8” is present, but the site currently returns an HTTP 404 response with the page title “Site Not Found | Framer”. The host is listed as offline in the latest check and has been taken down. Multiple detection engines have flagged the domain: VirusTotal records 14 positive detections out of 93 scanners, and the domain appears on one external security blocklist.
PhishDestroy has explicitly blocked the domain, indicating prior association with phishing activity. No additional public threat‑intel feeds (OTX, Safe Browsing, etc.) are referenced in the supplied data. The available evidence points to a short‑lived phishing infrastructure that was likely used shortly after registration and subsequently seized or removed. However, the exact payload, targeted brand, or phishing kit cannot be confirmed because the page content is unavailable and only a generic “Site Not Found” title is observed.
Consequently, the full scope of the campaign—such as victim count, lure vectors, or credential‑stealing mechanisms—remains unknown. Defenders should continue to block the domain at DNS and network layers, monitor the associated IP address for any re‑use, and add the identifier to internal threat‑intel feeds. Periodic re‑resolution checks are advised to detect possible re‑hosting. Because the domain is already offline, immediate remediation focuses on preventing future reuse of the same IP range and ensuring that any email or URL filters that previously flagged the domain remain active.
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
VirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of novbil.framer.website · checked Mar 2, 2026
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt