caring-kangaroo-307519[.]framer[.]app
“Xfinity Sign In”
caring-kangaroo-307519.framer.app — Контент недоступний. Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 23/91 (Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); URLQuery 2 alerts; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 95/100. Реєстратор: Framer.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, caring-kangaroo-307519.framer.app, presents a significant phishing threat by masquerading as an 'Xfinity Sign In' page. This is a classic phishing attack where users are targeted through deceptive web interfaces to input sensitive information, such as login credentials. The use of realistic brand imitation increases the domain's risk, categorizing it as a high-risk entity capable of significant data breaches if users' information is exploited.
Technical analysis shows that the domain has been marked by 23 out of 95 security vendors on VirusTotal as a phishing threat. It was registered through Framer and is currently taken offline, reflecting reactive security efforts. Google Safe Browsing has flagged it for phishing as well, corroborating these findings. Additionally, this domain appears on one security blocklist and resolves to the IP address 31.43.160.6. Its current takedown status does not mitigate the potential for damage, highlighting the need for users to remain vigilant.
Users who may have visited this domain should immediately change any potentially compromised passwords and monitor their accounts for suspicious activity. It is advisable to employ multi-factor authentication (MFA) where possible to add an extra layer of security. Additionally, users should report any unknown transactions to their respective service providers. Ensuring up-to-date antivirus software and frequent monitoring of account activities will help in mitigating risks from similar threats in the future.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | caring-kangaroo-307519.framer.app |
malicious | Sinkholed |
| OpenDNS | caring-kangaroo-307519.framer.app |
phishing | Phishing Block |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com 100% впевненостіReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Докази та зовнішні звіти
PD-20260607-F6A5DB Recipient: abuse@framer.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога