Resultaat

Taak-URL: http://84.200.24.181/

Verdacht niveau: Vermoedelijk gevaarlijk

Beschrijving: Deze pagina vraagt om een verificatieproces dat kan leiden tot het uitvoeren van schadelijke scripts via de geplande clipboard-actie.

Statistieken

6 2 6 6 17 2

Screenshot

Screenshot Thumbnail

HTML data

Lengte Actie
13255

DOM data

Lengte Actie
13255

IP adressen

IP Adres Gerelateerd Domein Bron Type
84.200.24.181 84.200.24.181 Web Request
[2606:4700::6811:190e] cdnjs.cloudflare.com Web Request
[2606:4700:3037::ac43:8ef5] use.fontawesome.com Web Request
[2a00:1450:400e:803::2004] www.google.com Web Request
84.200.24.181 84.200.24.181 NSLookup
104.17.25.14 cdnjs.cloudflare.com NSLookup
2606:4700::6811:180e cdnjs.cloudflare.com NSLookup
104.17.24.14 cdnjs.cloudflare.com NSLookup
2606:4700::6811:190e cdnjs.cloudflare.com NSLookup
172.67.142.245 use.fontawesome.com NSLookup
104.21.27.152 use.fontawesome.com NSLookup
2606:4700:3036::6815:1b98 use.fontawesome.com NSLookup
2606:4700:3037::ac43:8ef5 use.fontawesome.com NSLookup
142.251.36.36 www.google.com NSLookup
2a00:1450:400e:811::2004 www.google.com NSLookup
142.250.179.164 www.google.com NSLookup
2a00:1450:400e:802::2004 www.google.com NSLookup

Verwijzingen

Requestid Verwijzing Bestemming
570015A029ED138FD5419E2F2CFD583F http://84.200.24.181/ https://84.200.24.181/
570015A029ED138FD5419E2F2CFD583F https://84.200.24.181/ http://84.200.24.181/

Downloads

Bestandsnaam SHA256 | URL
b2236b67172bed0ef53da00a414b1a1f8425113a395862107944e62fa2aaeef9 13693 Bytes | 200 http://84.200.24.181/
[email protected] dedcb23076be667a897f4a90bde0bc80c6a6a58cfe68433bde59546eb9b74eb5 18160 Bytes | 200 https://www.google.com/recaptcha/about/images/[email protected]
all.min.css a361e7885c36bacb3fd9cb068da207c3b9329962cac022d06e28923939f575e8 83981 Bytes | 200 https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.0.0-beta3/css/all.min.css
all.css 9f29f2bbb25602f4bdbd3122c317244f8fd9741106ffd5a412574b02ee794993 33407 Bytes | 200 https://use.fontawesome.com/releases/v5.0.0/css/all.css
fa-brands-400.woff2 45e39853c41558c4922ff1b0895547a99e378f136ec3d9d2f4df15cc269485fa 52648 Bytes | 200 https://use.fontawesome.com/releases/v5.0.0/webfonts/fa-brands-400.woff2
favicon.ico 0 Bytes | 404 http://84.200.24.181/favicon.ico

Detectie

Tijdstempel Detectieregel Type Item
2025-03-14T01:03:00.979816+00:00 html_phishing_fakecaptcha_007 HTML
2025-03-14T01:03:00.921265+00:00 nl_url_keyword_redirect_suspect_001 URL https://www.google.com/recaptcha/about/images/[email protected]

Verzoeken

Request 3891 http://84.200.24.181/

Domein: 84.200.24.181

Methode: GET Bron: Document Status: 200

Request 3892 https://www.google.com/recaptcha/about/images/[email protected]

Domein: www.google.com

Methode: GET Bron: Image Status: 200

Request 3893 https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.0.0-beta3/css/all.min.css

Domein: cdnjs.cloudflare.com

Methode: GET Bron: Stylesheet Status: 200

Request 3894 https://use.fontawesome.com/releases/v5.0.0/css/all.css

Domein: use.fontawesome.com

Methode: GET Bron: Stylesheet Status: 200

Request 3895 https://use.fontawesome.com/releases/v5.0.0/webfonts/fa-brands-400.woff2

Domein: use.fontawesome.com

Methode: GET Bron: Font Status: 200

Request 3896 http://84.200.24.181/favicon.ico

Domein: 84.200.24.181

Methode: GET Bron: Other Status: 404

Antwoorden

Response 3904 http://84.200.24.181/

Status: 200 OK

Mime: text/html | Charset:

Remote IP: 84.200.24.181:80 | Protocol: http/1.1

Beveiligingsstatus: insecure | Uitgever:

Headers:

{"Accept-Ranges":"bytes","Connection":"Keep-Alive","Content-Encoding":"gzip","Content-Length":"3244","Content-Type":"text/html","Date":"Fri, 14 Mar 2025 01:02:57 GMT","ETag":"\"357d-62fdcf6ec06ba-gzip\"","Keep-Alive":"timeout=5, max=100","Last-Modified":"Sat, 08 Mar 2025 23:19:02 GMT","Server":"Apache/2.4.52 (Ubuntu)","Vary":"Accept-Encoding"}
Response 3905 https://www.google.com/recaptcha/about/images/[email protected]

Status: 200

Mime: image/png | Charset:

Remote IP: [2a00:1450:400e:803::2004]:443 | Protocol: h3

Beveiligingsstatus: secure | Uitgever: WR2

Headers:

{"accept-ranges":"bytes","age":"2781","alt-svc":"h3=\":443\"; ma=2592000,h3-29=\":443\"; ma=2592000","cache-control":"public, max-age=3000","content-length":"18160","content-security-policy-report-only":"require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/recaptcha","content-type":"image/png","cross-origin-opener-policy":"same-origin-allow-popups; report-to=\"recaptcha\"","cross-origin-resource-policy":"cross-origin","date":"Fri, 14 Mar 2025 00:16:36 GMT","expires":"Fri, 14 Mar 2025 01:06:36 GMT","last-modified":"Wed, 29 Jul 2020 17:15:00 GMT","report-to":"{\"group\":\"recaptcha\",\"max_age\":2592000,\"endpoints\":[{\"url\":\"https://csp.withgoogle.com/csp/report-to/recaptcha\"}]}","server":"sffe","x-content-type-options":"nosniff","x-xss-protection":"0"}
Response 3906 https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.0.0-beta3/css/all.min.css

Status: 200

Mime: text/css | Charset:

Remote IP: [2606:4700::6811:190e]:443 | Protocol: h3

Beveiligingsstatus: secure | Uitgever: WE1

Headers:

{"accept-ranges":"bytes","access-control-allow-origin":"*","age":"89080","alt-svc":"h3=\":443\"; ma=86400","cache-control":"public, max-age=30672000","cf-cache-status":"HIT","cf-cdnjs-via":"cfworker/kv","cf-ray":"91ffd93b2daf8ea8-AMS","content-encoding":"br","content-length":"14850","content-type":"text/css; charset=utf-8","cross-origin-resource-policy":"cross-origin","date":"Fri, 14 Mar 2025 01:02:57 GMT","etag":"\"619c057b-3a02\"","expires":"Wed, 04 Mar 2026 01:02:57 GMT","last-modified":"Mon, 22 Nov 2021 21:02:51 GMT","nel":"{\"success_fraction\":0.01,\"report_to\":\"cf-nel\",\"max_age\":604800}","priority":"u=0,i=?0","report-to":"{\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=qTx8eup23wf1hvKDk6e1QM3BsOF9vxtVDnxTD1SJF%2B1p5PWh0pIVHSJdE8pXXz8MbCVvg%2FtK8OQ9u6TfACoRj7VXuo2EqGwThoUIdjaLQFYvCI%2BIcfwxGYxdzc4eBfU1nm2RCZquF9IwOt8vWWnUdeFE\"}],\"group\":\"cf-nel\",\"max_age\":604800}","server":"cloudflare","server-timing":"cfExtPri","strict-transport-security":"max-age=15780000","timing-allow-origin":"*","vary":"Accept-Encoding","x-content-type-options":"nosniff"}
Response 3907 https://use.fontawesome.com/releases/v5.0.0/css/all.css

Status: 200

Mime: text/css | Charset:

Remote IP: [2606:4700:3037::ac43:8ef5]:443 | Protocol: h2

Beveiligingsstatus: secure | Uitgever: WE1

Headers:

{"age":"1838153","alt-svc":"h3=\":443\"; ma=86400","cache-control":"max-age=31556926","cf-cache-status":"HIT","cf-ray":"91ffd93b6e0bd579-AMS","content-encoding":"zstd","content-type":"text/css","date":"Fri, 14 Mar 2025 01:02:57 GMT","etag":"W/\"e35d9c4ebaea0573df8e4a9505b72eea\"","last-modified":"Fri, 22 Sep 2023 01:44:05 GMT","nel":"{\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}","report-to":"{\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=WW6rcqUUiJQ17FosyIc3a%2BkaUklh7YV54cay0vo%2F2biss1VBIiig8AmzrL9EFgQuQaav8E0sXlDFdyAHD3g%2F6VaEAjtf1MBAngkF2v88ks42sWLPE9Ow8e8L%2B55Sut5lh1dJDWO3%2B%2Bk5HChiXzmyzglz\"}],\"group\":\"cf-nel\",\"max_age\":604800}","server":"cloudflare","server-timing":"cfL4;desc=\"?proto=TCP\u0026rtt=1943\u0026min_rtt=1132\u0026rtt_var=1441\u0026sent=7\u0026recv=9\u0026lost=0\u0026retrans=0\u0026sent_bytes=4003\u0026recv_bytes=2327\u0026delivery_rate=3572438\u0026cwnd=246\u0026unsent_bytes=0\u0026cid=10bd78c4b316b3db\u0026ts=61\u0026x=0\"","vary":"Accept-Encoding"}
Response 3908 https://use.fontawesome.com/releases/v5.0.0/webfonts/fa-brands-400.woff2

Status: 200

Mime: font/woff2 | Charset:

Remote IP: [2606:4700:3037::ac43:8ef5]:443 | Protocol: h2

Beveiligingsstatus: secure | Uitgever: WE1

Headers:

{"accept-ranges":"bytes","access-control-allow-origin":"*","alt-svc":"h3=\":443\"; ma=86400","cache-control":"max-age=31556926","cf-cache-status":"HIT","cf-ray":"91ffd93c99c76622-AMS","content-length":"52648","content-type":"font/woff2","date":"Fri, 14 Mar 2025 01:02:58 GMT","etag":"\"657e828fb3a5963706e24cbf9d711bb8\"","last-modified":"Fri, 22 Sep 2023 01:44:04 GMT","nel":"{\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}","report-to":"{\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=vz3Cv8RIN4%2FZg%2FborSGLKUIa0AAfmSz2gC%2B67ta21AetvqPTiUt9ornw5JTZjz6cxn0ZSKXV%2FdEauOevr8Ch3CCwsZadv7Qt%2Fb771jxzMLScNgSIl0OujQf%2Fr2XeRhgE6NuA3ofaQ81HZiizepu7VRMy\"}],\"group\":\"cf-nel\",\"max_age\":604800}","server":"cloudflare","server-timing":"cfL4;desc=\"?proto=TCP\u0026rtt=1528\u0026min_rtt=1380\u0026rtt_var=672\u0026sent=7\u0026recv=10\u0026lost=0\u0026retrans=0\u0026sent_bytes=4005\u0026recv_bytes=2339\u0026delivery_rate=2562737\u0026cwnd=255\u0026unsent_bytes=0\u0026cid=80b851871b07495a\u0026ts=224\u0026x=0\"","vary":"Origin, Accept-Encoding"}
Response 3909 http://84.200.24.181/favicon.ico

Status: 404 Not Found

Mime: text/html | Charset: iso-8859-1

Remote IP: 84.200.24.181:80 | Protocol: http/1.1

Beveiligingsstatus: insecure | Uitgever:

Headers:

{"Connection":"Keep-Alive","Content-Length":"275","Content-Type":"text/html; charset=iso-8859-1","Date":"Fri, 14 Mar 2025 01:02:58 GMT","Keep-Alive":"timeout=5, max=99","Server":"Apache/2.4.52 (Ubuntu)"}