सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 18। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
डोमेन सुरक्षा और ख़तरे की आसूचना

specific-narwhal-903456[.]framer[.]app

“Sign in”

धमकी भरा फैसला गंभीर 95/100 साक्ष्य स्कोर
उपलब्धता सामग्री अनुपलब्ध नवीनतम अवलोकन में सामग्री अनुपलब्ध थी
वायरस का कुल पता लगाना: 18/91 ब्रांड प्रतिरूपण: ["microsoft"]
30/07/2026 ["microsoft"] CDN
रिपोर्ट सारांश

specific-narwhal-903456.framer.app — सामग्री अनुपलब्ध (HTTP 404). ब्रांड प्रतिरूपण: ["microsoft"]; घोटाले का प्रकार: Credential Phishing. साक्ष्य सारांश: VirusTotal 18/91 (alphaMountain.ai, BitDefender, Cluster25, ESET, Emsisoft); URLScan malicious verdict; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 95/100. रजिस्ट्रार: Framer.

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

साक्ष्य सारांश
आलोचनात्मक
संदर्भ
E09A36A8
स्कोर
95/100

Analysis of the domain specific-narwhal-903456.framer.app, observed on July 30, 2026, confirms that it is actively used for social engineering attacks. Google Safe Browsing classifies the site under social engineering, indicating that the URL is likely to be employed in credential‑stealing or information‑gathering campaigns. VirusTotal reports that 18 of 91 security vendors have flagged the domain, reinforcing the suspicion of malicious intent. The domain is registered through Framer B.V., a service commonly associated with web‑hosting and development platforms, and the registrar information is publicly available. Infrastructure probing shows the domain resolves to the IPv4 address 31.43.161.6; no further attribution such as ASN or hosting provider is disclosed in the available data.

Nameserver queries returned NS_NOT_FOUND, suggesting that standard DNS delegation records are missing or obscured, which can be an indicator of a deliberately hidden or transient hosting setup. The domain appears on two public blocklists and is explicitly listed by PhishDestroy and OpenPhish as a phishing source. Its status remains active, meaning the URL continues to resolve and can still be accessed by end users. No SSL certificate details, HTTP response codes, or page title information have been published, leaving the content of the landing page unverified.

Consequently, defenders should treat the domain as hostile until a definitive content analysis is performed. Recommended mitigation steps include adding the domain and its resolved IP address to network‑level deny lists, updating intrusion‑prevention signatures to block any outbound connections to 31.43.161.6, and ensuring that email and web filtering solutions reference the blocklist entries from PhishDestroy and OpenPhish. Continuous monitoring of the IP for any changes in hosting or additional domain registrations linked to the same infrastructure is advised.

VirusTotal
VirusTotal
18 det.
सीएफ रडार
दुर्भावनापूर्ण
URLScan
यूआरएलस्कैन
ScamAdviser
Scamadviser
80/100
TLS प्रमाणपत्र
Let's Encrypt
देखी गई स्थिति
सामग्री अनुपलब्ध 404
PhishDestroy
विनाश सूची
सूचीबद्ध
डेटा कवरेज VirusTotal 18 / 91 यूआरएलक्वेरी जाँच नहीं की गई फ़िशस्टैट्स जाँच नहीं की गई ओटीएक्स no community references सीएफ रडार provider verdict: malicious URLScan capture संग्रहित रिपोर्ट URLScan verdict malicious डीएनएस ब्लॉक जाँच नहीं की गई TLS valid certificate, 34d कौन है not parsed स्क्रीनशॉट 3 captures · 2 sources चेन पुनर्निर्देशित करें जांच नहीं की गई Scamadviser 80/100
नेटवर्क सुरक्षा इंटेलिजेंस
CF Cloudflare Radar Verdict दुर्भावनापूर्ण
Phishing Security threats Phishing

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
15/16

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict दुर्भावनापूर्ण score 100 Phishing brand: Microsoft report ↗
गूगल सुरक्षित ब्राउज़िंग ध्वजांकित Social engineering checked 30/07/2026
सर्वर / ASN Framer/5d364ee · AS16509 Amazon.com, Inc.
IP Context Framer shared edge origin IP hidden एज-आईपी प्रतिष्ठा इस डोमेन के लिए जिम्मेदार नहीं है।
प्लेटफ़ॉर्म प्रदाता Framer
दुरुपयोग संपर्कabuse@framer.com
IP पता 31.43.161.6 CDN
भौगोलिक स्थानNL Amsterdam, NL
नेटवर्कAS16509 · Framer B.V
रिवर्स IPviewdns.info → rapiddns.io →
मूल आईपी सीडीएन प्रॉक्सी के पीछे छिपा हुआ है। किनारे के पते के लिए रिवर्स-आईपी परिणामों में असंबंधित किरायेदार शामिल हैं; मूल का पता लगाने के लिए निष्क्रिय DNS या प्रमाणपत्र-पारदर्शिता डेटा की आवश्यकता होती है।
HTTP स्थिति404 Not Found
पहली अनुपलब्धता तक का समय 9h
हम क्या मापते हैं पहली संग्रहीत दुरुपयोग रिपोर्ट से लेकर पहली बार अवलोकन तक कि सामग्री अनुपलब्ध थी, बीता हुआ समय। इससे कारण स्थापित नहीं होता.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला30/07/2026
DOM Analysisanalyzed 30/07/2026score 0/1001 brand signal
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://specific-narwhal-903456.framer.app/
TLS Fingerprint
TLS Observationvalid from 05/06/2026scanned 30/07/2026
Favicon Hash
पेज शीर्षक
Sign in
Impersonates
Microsoft
TLS प्रमाणपत्र
Valid transport encryption · जारीकर्ता Let's Encrypt · valid for 34 days
थ्रेट इंटेलिजेंस क्रॉस-रेफ़रेंस · source references
स्कैमएडवाइज़र Public lookup
A public स्कैमएडवाइज़र lookup is available. Review its current score and warnings at the source; the existence of a lookup page is not itself a malicious verdict.
View on ScamAdviser
Live-fetched via CF worker proxy pool · cached 24h
तकनीकें · 4 identified
Framer Sites
CMS Page builders

Framer is a no-code web design platform for designing and publishing responsive websites.

www.framer.com 100% विश्वास
React
JavaScript frameworks

React is an open-source JavaScript library for building user interfaces or UI components.

reactjs.org 100% विश्वास
HSTS
सुरक्षा

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

www.rfc-editor.org 100% विश्वास
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org 100% विश्वास
Detected via क्लाउडफ्लेयर रडार · Wappalyzer engine
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

18 / 91 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed
alphaMountain.ai
BitDefender
Cluster25
ईएसईटी
Emsisoft
Forcepoint ThreatSeeker
Fortinet
G-Data
गूगल सुरक्षित ब्राउज़िंग
Gridinsoft
कास्परस्की
LevelBlue
Lionic
नेटक्राफ्ट
ओपनफ़िश
सोफोस
VIPRE
वेबरूट

संग्रहीत साक्ष्य

Wayback Machine Snapshot
साक्ष्य समीक्षा के लिए एक ऐतिहासिक स्नैपशॉट उपलब्ध है
View Archive
साइट प्रदर्शन विश्लेषण

Google PageSpeed Insights — mobile performance audit of specific-narwhal-903456.framer.app · checked Jul 30, 2026

70
Needs Work
Performance
FCP
1.98s
First Contentful Paint
LCP
3.33s
Largest Contentful Paint
CLS
0.002
Cumulative Layout Shift
TBT
914ms
Total Blocking Time
SI
1.98s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Stored Capture Evidence 1 snapshot

Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.

Archived HTTP response HTTP 404
Requested URL: http://specific-narwhal-903456.framer.app/
Final URL: https://specific-narwhal-903456.framer.app/
Site Not Found | Framer
प्रतिक्रिया
HTTP 404
HTML body
6.7 KB
Compressed
1.7 KB
Links
0 internal · 0 external
Selected response headers
Cache-Control: public, max-age=0, must-revalidate
Content-Type: text/html; charset=utf-8
Server: Framer/5d364ee
Security headers present
Strict-Transport-SecurityX-Content-Type-Options
HSTS: observed DNSSEC: not observed WAF / firewall: not observed Cloaking flag: not observed
All stored response-header names (8)
Alt-SvcCache-ControlContent-LengthContent-TypeDateServerStrict-Transport-SecurityX-Content-Type-Options

साक्ष्य और बाहरी रिपोर्टें

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/specific-narwhal-903456.framer.app"
  title="PhishDestroy threat report for specific-narwhal-903456.framer.app"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>