sympathetic-emails-006032[.]framer[.]app
“My Framer Site”
sympathetic-emails-006032.framer.app — Контент недоступний. Зведення доказів: VirusTotal 16/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, Cluster25, CRDF); CF Radar malicious; PhishDestroy score 95/100. Реєстратор: CSC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain sympathetic-emails-006032.framer.app was registered on February 21 2026 through CSC Corporate Domains, Inc. It resolves to the Amazon‑owned IP address 35.71.142.77 (AS16509, United States). The host presents an SSL certificate issued by Let’s Encrypt (E7) and serves content over HTTP/3 with HSTS enabled. Automated fingerprinting identified Framer Sites and React as the underlying web technologies. An HTTP request to the root URL returned a 404 status code and the page title “My Framer Site”, indicating that the site no longer hosts visible content.
The domain is currently listed as offline and has been taken down. VirusTotal analysis shows that 16 of 93 scanned security vendors flagged the domain, suggesting malicious intent. The domain appears on a single public blocklist and is actively blocked by the PhishDestroy service. Nameserver delegation points to four AWS DNS endpoints (ns-1371.awsdns-43.org, ns-2002.awsdns-58.co.uk, ns-51.awsdns-06.com, ns-625.awsdns-).
No additional intelligence such as phishing page screenshots, credential‑harvesting forms, or targeted brand information is available from the provided data. The primary indicators – recent registration, association with a cloud provider, presence of a valid TLS certificate, and multiple vendor detections – are consistent with a generic phishing infrastructure. Defenders should add the domain and its resolved IP to blocklists, monitor DNS queries for the listed nameservers, and consider extending detection rules to cover similar Framer‑based payloads. Continuous re‑assessment is recommended, as the offline status may change if the operators reactivate the site.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com 100% впевненостіReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога