Security Scan Report: breathtaking-intend-971835.framer.app

Site favicon
Submitted: Nov 6, 2025, 3:20:42 AMCompleted: Nov 6, 2025, 3:22:41 AMpubliccompleted
Loading additional data...

Summary

This website contacted 30 IPs in 1 country across 4 domains to perform 19 HTTP transactions. The main domain is breathtaking-intend-971835.framer.app.

Submitted URL: https://breathtaking-intend-971835.framer.app/

AI Security Verdict

High Risk

Confidence: 92%

9
Risk Score

Impersonates Xfinity login on a fresh, unranked Framer subdomain – high‑risk phishing.

Risk Factors
Brand impersonation of Xfinity on an unrelated domain
Newly registered subdomain likely created for phishing
Credential harvesting form (email/username) without legitimate purpose
Unranked domain lacking reputation
Absence of password field suggests deceptive intent
Domain age information unavailable

Details

Page Title

Xfinity Sign in

Scan Type

public

Language

🇺🇸

English

(54% confidence)

Category

corporate

(50%)

Domain Information

Domain 'breathtaking-intend-971835.framer.app' uses the application-focused generic top-level domain (.app); it also runs on subdomain 'breathtaking-intend-971835'. Count 6 characters in 'framer' holding 2 vowels versus 4 consonants. Breaking it apart gives 1 word: framer. Expect six characters per word on average. The linguistic tilt is English for 'frame'. Usage also turns up in Chinese (Pinyin) and French contexts.

Screenshot

Security scan screenshot of https://breathtaking-intend-971835.framer.app/

Page Load Overview

84.20s
Total Load Time
19
HTTP Requests
4
Domains
101 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:54%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:54%
Script Type:Latin
Text Length:156 chars
Detector Agreement:100%

Website Classification

Primary Category

corporate50% confidence
Type: dynamic
Method: structural

All Detected Categories

corporate
50%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
013.226.244.93United States
AS16509AMAZON-02
013.226.244.91United States
AS16509AMAZON-02
065.9.175.120United States
AS16509AMAZON-02
035.71.142.77United States
AS16509AMAZON-02
065.9.175.129United States
AS16509AMAZON-02
065.9.175.34United States
AS16509AMAZON-02
065.9.175.3United States
AS16509AMAZON-02
065.9.175.35United States
AS16509AMAZON-02
065.9.175.99United States
AS16509AMAZON-02
02600:9000:2096:1a00:10:9b9d:b9c0:93a1United States
AS16509AMAZON-02
1930--

Detected Technologies6

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T139931193615DF064ACD7697EEB5CE52C9D252140FF32C3CBA29E821F45C9AF42252B2C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:RzVJVMaj5eHCe++VOeCkVWeSVLaN9VBaKaTVhVk9VCw0jbD5jBG8c:TlN5tG8c

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:89236:Ia4IEGIAXIEURuxtTAMHEIVAAYNwpBrgCGkAggrAQQojSgQzncQYZFPlAwQuRBUxKEDUVgaIAgAYESBCAJxDKazYyxgG3hQK

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ee8ec6c6cefefefe
Perceptual Hash:f133c6c73131c6cc
Difference Hash:08280c1c100a0000
Wavelet Hash:2e0e06060e203e3e
Color Hash:#931f6d

Other Hashes

Crop Resistant:08280c1c100a0000

Scan History

Scan history not available

Unable to load historical scan data