attractive-states-704494[.]framer[.]app
“Dropbox”
attractive-states-704494.framer.app — Conteúdo indisponível. Tipo de golpe: Generic Phishing. Resumo das evidências: VirusTotal 21/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); URLQuery 4 alerts; PhishDestroy score 100/100. Registrador: Framer.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
PhishDestroy identifies attractive-states-704494.framer.app as an active fake investment scam site under investigation for phishing activities. The domain is currently unresolved by VirusTotal with 21/95 detections, indicating it has evaded immediate automated detection despite being listed on three security blocklists: OpenPhish, PhishingArmy, and OISD. This domain resolves to IP 31.43.160.6 and uses a Let's Encrypt SSL certificate, which may lend false credibility to unsuspecting users. The absence of detections on VirusTotal suggests a need for manual review and proactive blocking by security teams. This domain was flagged by security researchers due to its association with fraudulent investment schemes, specifically targeting individuals seeking financial opportunities. Key technical indicators include its recent creation date (exact date undisclosed), resolution to a high-risk IP address (31.43.160.6), and the use of a widely trusted but easily obtainable SSL certificate. Trust scores are critically low, as evidenced by its presence on three prominent blocklists. The combination of these factors—low detection rates, high-risk hosting, and known phishing associations—elevates the risk profile of this domain to an active threat requiring immediate attention. To mitigate exposure to this fake investment scam, organizations and individuals should implement domain blocking for attractive-states-704494.framer.app and IP 31.43.160.6 at the network perimeter. Security teams should configure firewalls, DNS filters, and endpoint protection to block traffic to this domain. Additionally, users should be warned against engaging with unsolicited investment offers or clicking links from unknown sources. Immediate reporting to cybersecurity platforms like OpenPhish or PhishingArmy can help improve detection rates and prevent further victimization. Proactive monitoring for similar domains using the same IP or SSL certificate is also recommended to identify related fraudulent activities.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | attractive-states-704494.framer.app |
malicious | Sinkholed |
| Cloudflare DNS | attractive-states-704494.framer.app |
malicious | Sinkholed |
| OpenDNS | attractive-states-704494.framer.app |
phishing | Phishing Block |
| DNS4EU | attractive-states-704494.framer.app |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of attractive-states-704494.framer.app · checked Apr 6, 2026
Evidências e relatórios externos
PD-20260406-EB93FD Recipient: abuse@framer.com Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo