rotating-engineers-971105[.]framer[.]app
“Sign in to Xfinity”
rotating-engineers-971105.framer.app — 콘텐츠를 사용할 수 없음. 브랜드 사칭: Xfinity; 사기 유형: Banking Phishing. 증거 요약: VirusTotal 15 detections (engine total unavailable) (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, ESET); URLQuery 3 alerts; URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. 등록기관: Framer.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
As of July 24, 2026, the domain rotating-engineers-971105.framer.app has been identified as a potential banking phishing site. The domain was registered through Framer and created on March 04, 2026. The page title for this domain is 'Sign in to Xfinity,' which suggests that the site may have been designed to mimic a legitimate Xfinity login page, although the exact content and layout of the site have not been analyzed. The domain is currently offline, with an HTTP status of 404, indicating that the site is no longer accessible or has been taken down.
However, it remains important for defenders to be aware of its past activity and current status. Infrastructure analysis reveals that the domain resolves to the IP address 31.43.160.6, which is located in the Netherlands and is part of the Amazon.com, Inc. network (AS16509). The site uses modern technologies including Framer Sites, React, HSTS, and HTTP/3. The SSL certificate for the domain is issued by Let's Encrypt, which is a common practice for legitimate and malicious sites alike.
The domain has been flagged by 15 out of 95 security vendors on VirusTotal, and it appears on one security blocklist, specifically PhishDestroy. This indicates a moderate level of suspicion and potential risk. Defenders should monitor for any reactivation of the domain and ensure that it remains blocked in their security systems to prevent any accidental access by users. Additionally, users should be educated to verify the legitimacy of any login pages they encounter, especially those claiming to be from Xfinity or other trusted brands.
네트워크 보안 인텔리전스
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | rotating-engineers-971105.framer.app |
phishing | Phishing Block |
| Cloudflare DNS | rotating-engineers-971105.framer.app |
malicious | Sinkholed |
| DNS4EU | rotating-engineers-971105.framer.app |
malicious | Sinkholed |
위협 대응 Pipeline
공개 차단 목록 상태
사용 기술 · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com 신뢰도 100%React is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 신뢰도 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 신뢰도 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 신뢰도 100%VirusTotal 분석
보관된 증거
사이트 성능 분석
Google PageSpeed Insights — mobile performance audit of rotating-engineers-971105.framer.app · checked Mar 4, 2026
증거 및 외부 보고서
PD-20260304-8CA8AC Recipient: abuse@framer.com 이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.