start-dafilamba-web[.]framer[.]website
“Site Not Found | Framer”
start-dafilamba-web.framer.website — Contenu indisponible (HTTP 404). Résumé des preuves: VirusTotal 5/93 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, CyRadar, Google Safebrowsing); Google Safe Browsing flagged; Spamhaus DBL_PHISH; PhishDestroy score 80/100. Bureau d’enregistrement: CSC.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain start-dafilamba-web.framer.website was registered on February 21, 2026 through CSC Corporate Domains, Inc. and resolves to the Amazon‑owned IP address 35.71.142.77, which is advertised as belonging to AS16509 Amazon.com, Inc. The authoritative name servers listed for the zone are ns-1243.awsdns-27.org, ns-1818.awsdns-35.co.uk, ns-336.awsdns-42.com, among others. An HTTPS service is present, presenting an SSL certificate identified only as "E7"; no further certificate details are available. When accessed, the site returns an HTTP 404 status and the page title "Site Not Found | Framer," indicating that the content is currently unavailable.
Google Safe Browsing marks the domain for social engineering, and the independent blocklist PhishDestroy has recorded it as malicious, classifying the threat as generic phishing. VirusTotal analysis shows that five of ninety‑three scanners flagged the domain, and it appears on a single public blocklist. The combination of registrar information, hosting on a cloud provider, a valid TLS endpoint, and multiple independent detections suggests an active malicious infrastructure that was taken offline at the time of reporting.
Defenders should continue to block the domain at perimeter and DNS layers, monitor for any re‑activation of the same host or related subdomains, and consider adding the associated IP address to reputation‑based deny lists. Because the site currently returns a 404 page, content‑level inspection is not possible, and the exact phishing payload or targeted brand remains unknown. Ongoing vigilance is required to detect any future resurrection of the domain or the reuse of its hosting resources for new campaigns.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif