interactive-party-667481[.]framer[.]app
“Sign in to Xfinity”
interactive-party-667481.framer.app — सामग्री अनुपलब्ध. ब्रांड प्रतिरूपण: Xfinity; घोटाले का प्रकार: Credential Phishing. साक्ष्य सारांश: VirusTotal 18/91 (alphaMountain.ai, BitDefender, Cluster25, Ermes, ESET); URLQuery 3 alerts; URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. रजिस्ट्रार: Framer.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
This domain is flagged for hosting a fake login page impersonating Xfinity, a high-risk phishing threat targeting user credentials. Analysis indicates the page title explicitly mimics the legitimate "Sign in to Xfinity" portal, designed to deceive users into submitting sensitive authentication details. The domain presents an elevated risk due to its direct association with credential harvesting campaigns, a common precursor to account takeovers and identity fraud. Infrastructure analysis reveals the domain interactive-party-667481.framer.app was registered through Framer, a platform often abused for rapid phishing deployment. It resolved to the IP address 31.43.161.6, geolocated in the Netherlands under AS16509 (Amazon.com, Inc.), a hosting provider frequently leveraged for malicious infrastructure. At the time of assessment, the domain was offline, though it had been flagged by 18 out of 95 security vendors on VirusTotal, indicating broad detection across multiple threat intelligence sources. The domain appeared on at least one security blocklist, further corroborating its malicious classification. No creation date was provided, but the combination of registrar, IP reputation, and detection volume suggests a transient yet high-impact threat. Mitigation steps for this specific threat type include immediate blocking of the domain and its associated IP (31.43.161.6) at the network perimeter. Organizations should deploy email and web filtering rules to prevent delivery or access to URLs containing "interactive-party-667481.framer.app" or variations of the Framer subdomain structure. End users who may have interacted with the page should be instructed to reset credentials for any accounts entered, particularly those tied to Xfinity or other telecommunication services. Security teams are advised to monitor for follow-up phishing attempts using similar Framer-hosted domains, as threat actors frequently rotate infrastructure within the same registrar ecosystem. Credential monitoring and multi-factor authentication enforcement are recommended to mitigate potential account compromise.
नेटवर्क सुरक्षा इंटेलिजेंस
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | interactive-party-667481.framer.app |
phishing | Phishing Block |
| DNS4EU | interactive-party-667481.framer.app |
malicious | Sinkholed |
| Cloudflare DNS | interactive-party-667481.framer.app |
malicious | Sinkholed |
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
तकनीकें · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com 100% विश्वासReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% विश्वासHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% विश्वासHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% विश्वासवायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
PD-20260529-F19323 Recipient: abuse@framer.com क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।