sympathetic-emails-006032[.]framer[.]app
“My Framer Site”
sympathetic-emails-006032.framer.app — Контент недоступен. Сводка доказательств: VirusTotal 16/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, Cluster25, CRDF); CF Radar malicious; PhishDestroy score 95/100. Регистратор: CSC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain sympathetic-emails-006032.framer.app was registered on February 21 2026 through CSC Corporate Domains, Inc. It resolves to the Amazon‑owned IP address 35.71.142.77 (AS16509, United States). The host presents an SSL certificate issued by Let’s Encrypt (E7) and serves content over HTTP/3 with HSTS enabled. Automated fingerprinting identified Framer Sites and React as the underlying web technologies. An HTTP request to the root URL returned a 404 status code and the page title “My Framer Site”, indicating that the site no longer hosts visible content.
The domain is currently listed as offline and has been taken down. VirusTotal analysis shows that 16 of 93 scanned security vendors flagged the domain, suggesting malicious intent. The domain appears on a single public blocklist and is actively blocked by the PhishDestroy service. Nameserver delegation points to four AWS DNS endpoints (ns-1371.awsdns-43.org, ns-2002.awsdns-58.co.uk, ns-51.awsdns-06.com, ns-625.awsdns-).
No additional intelligence such as phishing page screenshots, credential‑harvesting forms, or targeted brand information is available from the provided data. The primary indicators – recent registration, association with a cloud provider, presence of a valid TLS certificate, and multiple vendor detections – are consistent with a generic phishing infrastructure. Defenders should add the domain and its resolved IP to blocklists, monitor DNS queries for the listed nameservers, and consider extending detection rules to cover similar Framer‑based payloads. Continuous re‑assessment is recommended, as the offline status may change if the operators reactivate the site.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com 100% уверенностиReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% уверенностиHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание