orchid-timing-454163[.]framer[.]app
“Bell email”
orchid-timing-454163.framer.app — 内容不可用. 品牌冒充:Bcebell. 证据摘要: VirusTotal 18/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25, CyRadar); URLQuery 3 alerts; URLScan malicious verdict; CF Radar malicious; PhishDestroy score 100/100. 注册商: Framer.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, orchid-timing-454163.framer.app, is identified as a phishing resource impersonating Bell, a telecommunications provider. Analysis indicates the page presents a fraudulent login portal designed to harvest user credentials under the guise of a legitimate email service. No evidence of cryptocurrency drainer functionality or associated kits was observed; the primary threat vector is credential theft through brand impersonation. Infrastructure analysis reveals the following technical indicators: the domain is registered through Framer, a platform commonly used for web development and hosting. VirusTotal records show 18 out of 95 security vendors flagging the domain as malicious. The domain appears on a single security blocklist, specifically PhishDestroy. No associated IP addresses or creation dates were disclosed in available intelligence. Google Safe Browsing (GSB) status remains unconfirmed due to the domain's recent takedown. The page title, 'Bell email,' further corroborates the impersonation of Bell's services. The domain has been taken offline, reducing immediate exposure to end users. However, residual risk persists due to potential reuse of harvested credentials in secondary attacks, such as account takeovers or identity fraud. Organizations are advised to monitor for unauthorized access attempts linked to credentials potentially compromised via this phishing campaign. Users who interacted with the domain should reset passwords and enable multi-factor authentication on all associated accounts. Continuous vigilance is recommended, as similar domains may emerge using comparable infrastructure or brand impersonation tactics.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | orchid-timing-454163.framer.app |
malicious | Sinkholed |
| OpenDNS | orchid-timing-454163.framer.app |
phishing | Phishing Block |
| DNS4EU | orchid-timing-454163.framer.app |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com 置信度 100%React is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 置信度 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of orchid-timing-454163.framer.app · checked Jun 10, 2026
证据与外部报告
PD-20260610-0F4C2D Recipient: abuse@framer.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。