important-airport-585394[.]framer[.]app
“My Framer Site”
important-airport-585394.framer.app — 内容不可用. 品牌冒充:Microsoft; 诈骗类型:Credential Phishing. 证据摘要: VirusTotal 15/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Cluster25, CRDF); URLQuery 3 alerts; URLScan malicious verdict; PhishDestroy score 100/100. 注册商: Framer.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, important-airport-585394.framer.app, is identified as a fake login portal designed to harvest user credentials through deceptive authentication interfaces. Analysis indicates the site mimics legitimate login pages, likely targeting corporate or financial service users to capture usernames, passwords, and potentially multi-factor authentication codes. The infrastructure leverages realistic branding and domain cloaking to evade casual detection, increasing the likelihood of successful credential theft from unsuspecting visitors. Infrastructure analysis reveals the domain was registered on April 07, 2026, through the Framer platform, a service often exploited for rapid deployment of phishing pages due to its ease of use and built-in hosting. The domain resolves to the IP address 31.43.161.6 and uses a Let's Encrypt SSL certificate, providing a false sense of security to visitors. Detection metrics show 15 out of 95 security vendors on VirusTotal flag this domain as malicious, while it appears on one major security blocklist. The combination of low initial detection rates and the use of a reputable certificate issuer suggests an attempt to bypass automated security filters. Users who visited important-airport-585394.framer.app should immediately assume their credentials may have been compromised. Affected individuals should change passwords for any accounts accessed or entered on the site, prioritizing accounts with elevated privileges or financial access. Enable multi-factor authentication where available, using app-based or hardware tokens rather than SMS-based methods. Monitor linked accounts for unauthorized transactions or login attempts, and review connected devices for signs of compromise. If corporate credentials were exposed, report the incident to internal security teams to initiate containment protocols and prevent lateral movement within the network.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | important-airport-585394.framer.app |
phishing | Phishing Block |
| DNS4EU | important-airport-585394.framer.app |
malicious | Sinkholed |
| CIRA Canadian Shield DNS | important-airport-585394.framer.app |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of important-airport-585394.framer.app · checked Jun 26, 2026
证据与外部报告
PD-20260407-2F71AF Recipient: abuse@framer.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。