dydxen[.]framer[.]ai
“Site Not Found | Framer”
dydxen.framer.ai — Contenuto non disponibile. Simulazione del marchio: dYdX; Tipo di truffa: Crypto Scam. Riepilogo delle prove: VirusTotal 8/95 (ChainPatrol, alphaMountain.ai, CyRadar, ESET, Fortinet); Google Safe Browsing flagged; PhishDestroy score 80/100. Registrar: CSC.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Analysis of the domain dydxen.framer.ai indicates a brand impersonation scheme targeting dYdX, a decentralized cryptocurrency exchange. The domain, registered through CSC Corporate Domains, Inc. on January 6, 2018, currently resolves to IP 35.71.142.77, hosted on Amazon.com, Inc. infrastructure (AS16509) in the United States. As of July 24, 2026, the domain returns an HTTP 404 status with the page title 'Site Not Found | Framer,' suggesting it is either inactive or intentionally taken offline following detection. Eight of 95 security vendors on VirusTotal flagged this domain, and it appears on one security blocklist, specifically PhishDestroy.
Google Safe Browsing classifies the domain under 'social engineering,' consistent with its categorization as a crypto scam. The SSL certificate, issued by Let's Encrypt (serial E8), remains valid, and the site employs Framer Sites, React, HSTS, and HTTP/3 technologies. Nameservers are hosted under AWS (ns-114.awsdns-14.com, ns-1198.awsdns-21.org, ns-1902.awsdns-45.co.uk, ns-635.awsdns). While the domain is currently offline, defenders should treat it as a confirmed malicious resource due to its detection history and association with cryptocurrency fraud.
Network-level blocking of 35.71.142.77 and monitoring for re-registration or DNS changes is recommended. The exact content of the phishing page is not yet analyzed, but the available indicators align with prior dYdX impersonation campaigns. No evidence suggests this domain was used for legitimate purposes.
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
Tecnologie · 4 identified
JavaScript library for building user interfaces with component-based architecture.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analisi di VirusTotal
Prove archiviate
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo