shy-years-687432[.]framer[.]app
“Xfinity Sign In”
shy-years-687432.framer.app — Contenido no disponible. Suplantación de marca: GMX; Tipo de estafa: Credential Phishing. Resumen de las pruebas: VirusTotal 19/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, Cluster25, CyRadar); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. Registrador: AT-88-Z (ASN: 16509).
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
This domain, shy-years-687432.framer.app, is flagged for brand impersonation, specifically targeting the GMX brand. The site poses a high risk as it impersonates a legitimate login page, potentially tricking users into submitting their credentials, which can lead to account compromise and unauthorized access to personal data.
Analysis indicates that shy-years-687432.framer.app was detected by 19 out of 95 security vendors on VirusTotal, a significant number that suggests the domain is likely malicious. The domain was registered through AT-88-Z, an Amazon registrar, and resolves to an IP address in the United States (52.223.52.2, AS16509 Amazon.com, Inc.). The page title 'Xfinity Sign In' is a clear indicator of an attempt to mislead users, as it does not match the targeted brand, GMX. The domain is currently offline, which may indicate that it has been taken down by security measures or the threat actors.
If a user has visited this domain, they should immediately change their GMX account password and enable two-factor authentication (2FA) to enhance security. Users should also monitor their account for any unusual activity and report any suspicious logins to GMX support. Additionally, it is recommended to run a full system scan using reputable antivirus software to ensure that no malware was installed during the visit. Staying vigilant and avoiding suspicious links in emails or messages can prevent future incidents of this nature.
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Tecnologías · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com 100 % de confianzaReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100 % de confianzaHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100 % de confianzaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % de confianzaAnálisis de VirusTotal
Evidencias archivadas
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.