Taak-URL: http://79.133.46.59/
Verdacht niveau: Vermoedelijk gevaarlijk
Beschrijving: De pagina probeert gebruikers te misleiden met een valse verificatie om toegang te krijgen tot hun systeem en mogelijk kwaadaardige scripts uit te voeren.
6 | 2 | 6 | 6 | 17 | 2 |
Lengte | Actie |
---|---|
13251 |
Lengte | Actie |
---|---|
13251 |
IP Adres | Gerelateerd Domein | Bron Type |
---|---|---|
79.133.46.59 | 79.133.46.59 | Web Request |
[2606:4700::6811:180e] | cdnjs.cloudflare.com | Web Request |
[2606:4700:3036::6815:1b98] | use.fontawesome.com | Web Request |
[2a00:1450:400e:811::2004] | www.google.com | Web Request |
79.133.46.59 | 79.133.46.59 | NSLookup |
104.17.24.14 | cdnjs.cloudflare.com | NSLookup |
2606:4700::6811:180e | cdnjs.cloudflare.com | NSLookup |
104.17.25.14 | cdnjs.cloudflare.com | NSLookup |
2606:4700::6811:190e | cdnjs.cloudflare.com | NSLookup |
2606:4700:3037::ac43:8ef5 | use.fontawesome.com | NSLookup |
2606:4700:3036::6815:1b98 | use.fontawesome.com | NSLookup |
172.67.142.245 | use.fontawesome.com | NSLookup |
104.21.27.152 | use.fontawesome.com | NSLookup |
142.250.179.164 | www.google.com | NSLookup |
2a00:1450:400e:811::2004 | www.google.com | NSLookup |
142.251.39.100 | www.google.com | NSLookup |
2a00:1450:400e:802::2004 | www.google.com | NSLookup |
Requestid | Verwijzing | Bestemming |
---|---|---|
4C18AB15DE362EF7BD3DCAA694102765 | http://79.133.46.59/ | https://79.133.46.59/ |
4C18AB15DE362EF7BD3DCAA694102765 | https://79.133.46.59/ | http://79.133.46.59/ |
Bestandsnaam | SHA256 | | | URL |
---|---|---|---|
d2c5fea6d53f200e3585f4138042131d4322de70c39f911fd36fdd3e5d0fd8c7 | 13689 Bytes | 200 | http://79.133.46.59/ | |
all.min.css | a361e7885c36bacb3fd9cb068da207c3b9329962cac022d06e28923939f575e8 | 83981 Bytes | 200 | https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.0.0-beta3/css/all.min.css |
[email protected] | dedcb23076be667a897f4a90bde0bc80c6a6a58cfe68433bde59546eb9b74eb5 | 18160 Bytes | 200 | https://www.google.com/recaptcha/about/images/[email protected] |
all.css | 9f29f2bbb25602f4bdbd3122c317244f8fd9741106ffd5a412574b02ee794993 | 33407 Bytes | 200 | https://use.fontawesome.com/releases/v5.0.0/css/all.css |
fa-brands-400.woff2 | 45e39853c41558c4922ff1b0895547a99e378f136ec3d9d2f4df15cc269485fa | 52648 Bytes | 200 | https://use.fontawesome.com/releases/v5.0.0/webfonts/fa-brands-400.woff2 |
favicon.ico | 0 Bytes | 404 | http://79.133.46.59/favicon.ico |
Tijdstempel | Detectieregel | Type | Item |
---|---|---|---|
2025-03-05T17:18:51.60571+00:00 | html_phishing_fakecaptcha_007 | HTML | |
2025-03-05T17:18:51.419965+00:00 | nl_url_keyword_redirect_suspect_001 | URL | https://www.google.com/recaptcha/about/images/[email protected] |
Domein: 79.133.46.59
Methode: GET Bron: Document Status: 200
Domein: cdnjs.cloudflare.com
Methode: GET Bron: Stylesheet Status: 200
Domein: www.google.com
Methode: GET Bron: Image Status: 200
Domein: use.fontawesome.com
Methode: GET Bron: Stylesheet Status: 200
Domein: use.fontawesome.com
Methode: GET Bron: Font Status: 200
Domein: 79.133.46.59
Methode: GET Bron: Other Status: 404
Status: 200 OK
Mime: text/html | Charset: utf-8
Remote IP: 79.133.46.59:80 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Accept-Ranges":"bytes","Connection":"Keep-Alive","Content-Encoding":"gzip","Content-Length":"3244","Content-Type":"text/html; charset=utf-8","Date":"Wed, 05 Mar 2025 17:18:48 GMT","ETag":"\"3579-62f8355da8748-gzip\"","Keep-Alive":"timeout=5, max=100","Last-Modified":"Tue, 04 Mar 2025 12:23:07 GMT","Server":"Apache/2.4.52 (Ubuntu)","Vary":"Accept-Encoding"}
Status: 200
Mime: text/css | Charset:
Remote IP: [2606:4700::6811:180e]:443 | Protocol: h3
Beveiligingsstatus: secure | Uitgever: WE1
Headers:
{"accept-ranges":"bytes","access-control-allow-origin":"*","age":"691460","alt-svc":"h3=\":443\"; ma=86400","cache-control":"public, max-age=30672000","cf-cache-status":"HIT","cf-cdnjs-via":"cfworker/kv","cf-ray":"91bb464fcb9c0ae0-AMS","content-encoding":"br","content-length":"14850","content-type":"text/css; charset=utf-8","cross-origin-resource-policy":"cross-origin","date":"Wed, 05 Mar 2025 17:18:48 GMT","etag":"\"619c057b-3a02\"","expires":"Mon, 23 Feb 2026 17:18:48 GMT","last-modified":"Mon, 22 Nov 2021 21:02:51 GMT","nel":"{\"success_fraction\":0.01,\"report_to\":\"cf-nel\",\"max_age\":604800}","priority":"u=0,i=?0","report-to":"{\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=oI0S%2F1rQnbH8V7JPiQEgClPs7SbokynsDY628Qt0%2BiAb9AS7OGGrd8NLmIYaTEGRGzKmgYS%2BEzHQgAj3uDzIZmqH9YGIuCaXxXfKciDNV5jOcJcAiEsJuyQhKP%2BO8l62%2B0X87sHO2cpS325TiPqQNxtV\"}],\"group\":\"cf-nel\",\"max_age\":604800}","server":"cloudflare","server-timing":"cfExtPri","strict-transport-security":"max-age=15780000","timing-allow-origin":"*","vary":"Accept-Encoding","x-content-type-options":"nosniff"}
Status: 200
Mime: image/png | Charset:
Remote IP: [2a00:1450:400e:811::2004]:443 | Protocol: h3
Beveiligingsstatus: secure | Uitgever: WR2
Headers:
{"accept-ranges":"bytes","age":"553","alt-svc":"h3=\":443\"; ma=2592000,h3-29=\":443\"; ma=2592000","cache-control":"public, max-age=3000","content-length":"18160","content-security-policy-report-only":"require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/recaptcha","content-type":"image/png","cross-origin-opener-policy":"same-origin-allow-popups; report-to=\"recaptcha\"","cross-origin-resource-policy":"cross-origin","date":"Wed, 05 Mar 2025 17:09:35 GMT","expires":"Wed, 05 Mar 2025 17:59:35 GMT","last-modified":"Wed, 29 Jul 2020 17:15:00 GMT","report-to":"{\"group\":\"recaptcha\",\"max_age\":2592000,\"endpoints\":[{\"url\":\"https://csp.withgoogle.com/csp/report-to/recaptcha\"}]}","server":"sffe","x-content-type-options":"nosniff","x-xss-protection":"0"}
Status: 200
Mime: text/css | Charset:
Remote IP: [2606:4700:3036::6815:1b98]:443 | Protocol: h2
Beveiligingsstatus: secure | Uitgever: WE1
Headers:
{"age":"1119104","alt-svc":"h3=\":443\"; ma=86400","cache-control":"max-age=31556926","cf-cache-status":"HIT","cf-ray":"91bb4650ace37742-AMS","content-encoding":"zstd","content-type":"text/css","date":"Wed, 05 Mar 2025 17:18:48 GMT","etag":"W/\"e35d9c4ebaea0573df8e4a9505b72eea\"","last-modified":"Fri, 22 Sep 2023 01:44:05 GMT","nel":"{\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}","report-to":"{\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=oyLHK%2F6msNS0%2BG3OqhphPDWAJR7t%2BDALxmknwDxrCGMoexJiLfEoUDYtWxmiQHbwMwEghu7ICzeJD77ejgHXJtpPlXtglnb0YFZkT519DID0ntwRZ%2FIGU3cFtx6ZhX%2FcB0UxIiCuq2A78zuio5lXQxxW\"}],\"group\":\"cf-nel\",\"max_age\":604800}","server":"cloudflare","server-timing":"cfL4;desc=\"?proto=TCP\u0026rtt=1784\u0026min_rtt=1756\u0026rtt_var=318\u0026sent=7\u0026recv=12\u0026lost=0\u0026retrans=0\u0026sent_bytes=4036\u0026recv_bytes=2377\u0026delivery_rate=2215890\u0026cwnd=254\u0026unsent_bytes=0\u0026cid=8d7e6e4dc9511e4b\u0026ts=151\u0026x=0\"","vary":"Accept-Encoding"}
Status: 200
Mime: font/woff2 | Charset:
Remote IP: [2606:4700:3036::6815:1b98]:443 | Protocol: h2
Beveiligingsstatus: secure | Uitgever: WE1
Headers:
{"accept-ranges":"bytes","access-control-allow-origin":"*","alt-svc":"h3=\":443\"; ma=86400","cache-control":"max-age=31556926","cf-cache-status":"HIT","cf-ray":"91bb4651288e3129-AMS","content-length":"52648","content-type":"font/woff2","date":"Wed, 05 Mar 2025 17:18:48 GMT","etag":"\"657e828fb3a5963706e24cbf9d711bb8\"","last-modified":"Fri, 22 Sep 2023 01:44:04 GMT","nel":"{\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}","report-to":"{\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=l3SS%2F8h2n5DbnEqHjS%2FpUjuW53csuP%2Bm%2BJONtEdFAPqG%2BWJa9cgyI9qWFSAhiarg%2FPj07BpQY0N%2Be3xpflBWDmMIacJTCemMbwJ4YzKJ%2FpZxdZF0Zkm5NkKrFJxKB2m4pZ%2FRa9sK8g0xd26C3BSJ9MOS\"}],\"group\":\"cf-nel\",\"max_age\":604800}","server":"cloudflare","server-timing":"cfL4;desc=\"?proto=TCP\u0026rtt=1553\u0026min_rtt=1276\u0026rtt_var=769\u0026sent=7\u0026recv=10\u0026lost=0\u0026retrans=0\u0026sent_bytes=4034\u0026recv_bytes=2420\u0026delivery_rate=3169278\u0026cwnd=250\u0026unsent_bytes=0\u0026cid=1b209d45a95943a3\u0026ts=132\u0026x=0\"","vary":"Origin, Accept-Encoding"}
Status: 404 Not Found
Mime: text/html | Charset: iso-8859-1
Remote IP: 79.133.46.59:80 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Connection":"Keep-Alive","Content-Length":"274","Content-Type":"text/html; charset=iso-8859-1","Date":"Wed, 05 Mar 2025 17:18:48 GMT","Keep-Alive":"timeout=5, max=99","Server":"Apache/2.4.52 (Ubuntu)"}