Taak-URL: http://196.251.71.185/
Verdacht niveau: Vermoedelijk gevaarlijk
Beschrijving: De titel 'HOOKBOT PANEL' suggereert dat deze pagina mogelijk gebruikt wordt voor kwaadaardige activiteiten zoals het beheren van gestolen gegevens.
17 | 2 | 20 | 20 | 11 | 5 |
Lengte | Actie |
---|---|
15782 |
Lengte | Actie |
---|---|
15782 |
IP Adres | Gerelateerd Domein | Bron Type |
---|---|---|
196.251.71.185 | 196.251.71.185 | Web Request |
[2606:50c0:8001::153] | purecatamphetamine.github.io | Web Request |
196.251.71.185 | 196.251.71.185 | NSLookup |
185.199.108.153 | purecatamphetamine.github.io | NSLookup |
185.199.110.153 | purecatamphetamine.github.io | NSLookup |
2606:50c0:8002::153 | purecatamphetamine.github.io | NSLookup |
2606:50c0:8000::153 | purecatamphetamine.github.io | NSLookup |
185.199.109.153 | purecatamphetamine.github.io | NSLookup |
2606:50c0:8001::153 | purecatamphetamine.github.io | NSLookup |
2606:50c0:8003::153 | purecatamphetamine.github.io | NSLookup |
185.199.111.153 | purecatamphetamine.github.io | NSLookup |
Requestid | Verwijzing | Bestemming |
---|---|---|
800E90BB758BBEDD42A082D71BA474B9 | http://196.251.71.185/ | https://196.251.71.185/ |
800E90BB758BBEDD42A082D71BA474B9 | https://196.251.71.185/ | http://196.251.71.185/ |
Bestandsnaam | SHA256 | | | URL |
---|---|---|---|
86e6f30782818c1bcee9aa40d9cdad55983afd7f12db68b5c92fab7062b3b16f | 7834 Bytes | 200 | http://196.251.71.185/ | |
fontawesome.min.css | 863ab50a39fc203ca8f614cef14c6cc700ee64bfeacd41426dce9ef8cbd98509 | 80651 Bytes | 200 | http://196.251.71.185/assets/fontawesome/css/fontawesome.min.css |
style.css | 002a20bb327c239893a00b908f0ed4cebb527a2957e61aa49528b71a6a450490 | 3504 Bytes | 200 | http://196.251.71.185/assets/fonts/icons/style.css |
style.css | 192a731c7357c9cc21c2ed31feb497561738fbb7353e047d3eb30bf06075c7f5 | 1385 Bytes | 200 | http://196.251.71.185/assets/fonts/icons/permissions/style.css |
style.css | e09bb0962eaf03380ebd592134c4cbccd9a9dbe0cad5d8c886c42e50c078e728 | 1650 Bytes | 200 | http://196.251.71.185/assets/fonts/mulish/style.css |
all.min.css | 01b035efb5dfa529c512f82962ed633328222da6f33c224244806d4798c67349 | 101784 Bytes | 200 | http://196.251.71.185/assets/fontawesome/css/all.min.css |
1Ptyg83HX_SGhgqO0yLcmjzUAuWexZNR8aevGw.woff2 | ad234f0985f2142bb1fa3a281ddf2511d320f84f73422df2b2384f115b4b9131 | 11232 Bytes | 200 | http://196.251.71.185/assets/fonts/mulish/1Ptyg83HX_SGhgqO0yLcmjzUAuWexZNR8aevGw.woff2 |
main.397ec292.css | 5bf31c83371902b8a44eeaadddcc1dad52b39d074bc3c0613df9ead6850a6a6c | 675244 Bytes | 200 | http://196.251.71.185/static/css/main.397ec292.css |
favicon-32x32.png | b26651525e75ecd609b482e0d3dfad4cbc6e86670e73d06a787be342b042e877 | 2052 Bytes | 200 | http://196.251.71.185/assets/fav/favicon-32x32.png |
main.e621e107.js | ae6926ef15eb70c995de1d43625268771bedaa9ccd4d625e8c534342b2d4068e | 3818641 Bytes | 200 | http://196.251.71.185/static/js/main.e621e107.js |
login_poster.jpg | 82b5025eca7e248ab6a54077b939835ddb259853fcc94b258cd1a39abece9fd0 | 18418 Bytes | 200 | http://196.251.71.185/assets/images/login_poster.jpg |
fa-solid-900.woff2 | d27bc752105c079f8a516e9142406a9fc12cbb409f9bf8681f2ddfe0360b52a6 | 150472 Bytes | 200 | http://196.251.71.185/assets/fontawesome/webfonts/fa-solid-900.woff2 |
hook.svg | 86e6f30782818c1bcee9aa40d9cdad55983afd7f12db68b5c92fab7062b3b16f | 7834 Bytes | 200 | http://196.251.71.185/images/hook.svg |
login_sd.mp4 | 6a6bf9bb5f4c7c56da26d193ffca2cf5900d08e250373c9c0ff7ae1a86d37af4 | 6265758 Bytes | 206 | http://196.251.71.185/assets/images/login_sd.mp4 |
US.svg | 0368f33db1cc70ef5eee2a5de99571b65d394d8964f4824ce3919d45998775c0 | 1352 Bytes | 200 | https://purecatamphetamine.github.io/country-flag-icons/3x2/US.svg |
login_sd.mp4 | 6a6bf9bb5f4c7c56da26d193ffca2cf5900d08e250373c9c0ff7ae1a86d37af4 | 6265758 Bytes | 206 | http://196.251.71.185/assets/images/login_sd.mp4 |
login_sd.mp4 | 6a6bf9bb5f4c7c56da26d193ffca2cf5900d08e250373c9c0ff7ae1a86d37af4 | 6265758 Bytes | 206 | http://196.251.71.185/assets/images/login_sd.mp4 |
Tijdstempel | Detectieregel | Type | Item |
---|---|---|---|
2025-03-12T11:33:51.55074+00:00 | nl_url_keyword_inlog_phishing_001 | URL | http://196.251.71.185/assets/images/login_poster.jpg |
2025-03-12T11:33:51.576595+00:00 | nl_url_keyword_inlog_phishing_001 | URL | http://196.251.71.185/assets/images/login_sd.mp4 |
2025-03-12T11:33:51.598095+00:00 | nl_url_keyword_inlog_phishing_001 | URL | http://196.251.71.185/assets/images/login_sd.mp4 |
2025-03-12T11:33:51.600864+00:00 | nl_url_keyword_inlog_phishing_001 | URL | http://196.251.71.185/assets/images/login_sd.mp4 |
2025-03-12T11:33:51.629259+00:00 | nl_html_c2_hookbot_002 | HTML |
Domein: 196.251.71.185
Methode: GET Bron: Document Status: 200
Domein: 196.251.71.185
Methode: GET Bron: Stylesheet Status: 200
Domein: 196.251.71.185
Methode: GET Bron: Stylesheet Status: 200
Domein: 196.251.71.185
Methode: GET Bron: Stylesheet Status: 200
Domein: 196.251.71.185
Methode: GET Bron: Stylesheet Status: 200
Domein: 196.251.71.185
Methode: GET Bron: Stylesheet Status: 200
Domein: 196.251.71.185
Methode: GET Bron: Font Status: 200
Domein: 196.251.71.185
Methode: GET Bron: XHR Status: 200
Domein: 196.251.71.185
Methode: GET Bron: Other Status: 200
Domein:
Methode: GET Bron: Stylesheet Status: 200
Domein: 196.251.71.185
Methode: GET Bron: XHR Status: 200
Domein:
Methode: GET Bron: Script Status: 200
Domein:
Methode: GET Bron: Image Status: 200
Domein: 196.251.71.185
Methode: GET Bron: Image Status: 200
Domein: 196.251.71.185
Methode: GET Bron: Font Status: 200
Domein: 196.251.71.185
Methode: GET Bron: Image Status: 200
Domein: 196.251.71.185
Methode: GET Bron: Media Status: 206
Domein: purecatamphetamine.github.io
Methode: GET Bron: Image Status: 200
Domein: 196.251.71.185
Methode: GET Bron: Media Status: 206
Domein: 196.251.71.185
Methode: GET Bron: Media Status: 206
Status: 200 OK
Mime: text/html | Charset:
Remote IP: 196.251.71.185:80 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"text/html","Date":"Wed, 12 Mar 2025 11:33:46 GMT","ETag":"W/\"67d08713-1e9a\"","Last-Modified":"Tue, 11 Mar 2025 18:55:15 GMT","Server":"nginx/1.27.4","Transfer-Encoding":"chunked","Vary":"Accept-Encoding"}
Status: 200 OK
Mime: text/css | Charset:
Remote IP: 196.251.71.185:80 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"text/css","Date":"Wed, 12 Mar 2025 11:33:46 GMT","ETag":"W/\"67d084fd-13b0b\"","Last-Modified":"Tue, 11 Mar 2025 18:46:21 GMT","Server":"nginx/1.27.4","Transfer-Encoding":"chunked","Vary":"Accept-Encoding"}
Status: 200 OK
Mime: text/css | Charset:
Remote IP: 196.251.71.185:80 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"text/css","Date":"Wed, 12 Mar 2025 11:33:46 GMT","ETag":"W/\"67d084fd-db0\"","Last-Modified":"Tue, 11 Mar 2025 18:46:21 GMT","Server":"nginx/1.27.4","Transfer-Encoding":"chunked","Vary":"Accept-Encoding"}
Status: 200 OK
Mime: text/css | Charset:
Remote IP: 196.251.71.185:80 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"text/css","Date":"Wed, 12 Mar 2025 11:33:46 GMT","ETag":"W/\"67d084fd-569\"","Last-Modified":"Tue, 11 Mar 2025 18:46:21 GMT","Server":"nginx/1.27.4","Transfer-Encoding":"chunked","Vary":"Accept-Encoding"}
Status: 200 OK
Mime: text/css | Charset:
Remote IP: 196.251.71.185:80 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"text/css","Date":"Wed, 12 Mar 2025 11:33:46 GMT","ETag":"W/\"67d084fd-672\"","Last-Modified":"Tue, 11 Mar 2025 18:46:21 GMT","Server":"nginx/1.27.4","Transfer-Encoding":"chunked","Vary":"Accept-Encoding"}
Status: 200 OK
Mime: text/css | Charset:
Remote IP: 196.251.71.185:80 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"text/css","Date":"Wed, 12 Mar 2025 11:33:46 GMT","ETag":"W/\"67d084fd-18d98\"","Last-Modified":"Tue, 11 Mar 2025 18:46:21 GMT","Server":"nginx/1.27.4","Transfer-Encoding":"chunked","Vary":"Accept-Encoding"}
Status: 200 OK
Mime: font/woff2 | Charset:
Remote IP: 196.251.71.185:80 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Accept-Ranges":"bytes","Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Length":"11232","Content-Type":"font/woff2","Date":"Wed, 12 Mar 2025 11:33:46 GMT","ETag":"\"67d084fd-2be0\"","Last-Modified":"Tue, 11 Mar 2025 18:46:21 GMT","Server":"nginx/1.27.4"}
Status: 200 OK
Mime: text/css | Charset:
Remote IP: 196.251.71.185:80 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"text/css","Date":"Wed, 12 Mar 2025 11:33:46 GMT","ETag":"W/\"67d08713-a4dac\"","Last-Modified":"Tue, 11 Mar 2025 18:55:15 GMT","Server":"nginx/1.27.4","Transfer-Encoding":"chunked","Vary":"Accept-Encoding"}
Status: 200 OK
Mime: image/png | Charset:
Remote IP: 196.251.71.185:80 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Accept-Ranges":"bytes","Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Length":"2052","Content-Type":"image/png","Date":"Wed, 12 Mar 2025 11:33:46 GMT","ETag":"\"67d084fd-804\"","Last-Modified":"Tue, 11 Mar 2025 18:46:21 GMT","Server":"nginx/1.27.4"}
Status: 200 OK
Mime: text/css | Charset:
Remote IP: :0 | Protocol: blob
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Content-Length":"675244","Content-Type":"text/css"}
Status: 200 OK
Mime: application/javascript | Charset:
Remote IP: 196.251.71.185:80 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"application/javascript","Date":"Wed, 12 Mar 2025 11:33:46 GMT","ETag":"W/\"67d08713-3a4491\"","Last-Modified":"Tue, 11 Mar 2025 18:55:15 GMT","Server":"nginx/1.27.4","Transfer-Encoding":"chunked","Vary":"Accept-Encoding"}
Status: 200 OK
Mime: application/javascript | Charset:
Remote IP: :0 | Protocol: blob
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Content-Length":"3818641","Content-Type":"application/javascript"}
Status: 200 OK
Mime: image/png | Charset:
Remote IP: :0 | Protocol: data
Beveiligingsstatus: unknown | Uitgever:
Headers:
{"Content-Type":"image/png"}
Status: 200 OK
Mime: image/jpeg | Charset:
Remote IP: 196.251.71.185:80 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Accept-Ranges":"bytes","Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Length":"18418","Content-Type":"image/jpeg","Date":"Wed, 12 Mar 2025 11:33:47 GMT","ETag":"\"67d084fd-47f2\"","Last-Modified":"Tue, 11 Mar 2025 18:46:21 GMT","Server":"nginx/1.27.4"}
Status: 200 OK
Mime: font/woff2 | Charset:
Remote IP: 196.251.71.185:80 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Accept-Ranges":"bytes","Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Length":"150472","Content-Type":"font/woff2","Date":"Wed, 12 Mar 2025 11:33:47 GMT","ETag":"\"67d084fd-24bc8\"","Last-Modified":"Tue, 11 Mar 2025 18:46:21 GMT","Server":"nginx/1.27.4"}
Status: 200 OK
Mime: text/html | Charset:
Remote IP: 196.251.71.185:80 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"text/html","Date":"Wed, 12 Mar 2025 11:33:47 GMT","ETag":"W/\"67d08713-1e9a\"","Last-Modified":"Tue, 11 Mar 2025 18:55:15 GMT","Server":"nginx/1.27.4","Transfer-Encoding":"chunked","Vary":"Accept-Encoding"}
Status: 206 Partial Content
Mime: video/mp4 | Charset:
Remote IP: 196.251.71.185:80 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Length":"6265758","Content-Range":"bytes 0-6265757/6265758","Content-Type":"video/mp4","Date":"Wed, 12 Mar 2025 11:33:47 GMT","ETag":"\"67d084fd-5f9b9e\"","Last-Modified":"Tue, 11 Mar 2025 18:46:21 GMT","Server":"nginx/1.27.4"}
Status: 200
Mime: image/svg+xml | Charset:
Remote IP: [2606:50c0:8001::153]:443 | Protocol: h2
Beveiligingsstatus: secure | Uitgever: Sectigo RSA Domain Validation Secure Server CA
Headers:
{"accept-ranges":"bytes","access-control-allow-origin":"*","age":"595","cache-control":"max-age=600","content-encoding":"gzip","content-length":"480","content-type":"image/svg+xml","date":"Wed, 12 Mar 2025 11:33:47 GMT","etag":"W/\"67b5e278-548\"","expires":"Tue, 11 Mar 2025 04:16:55 GMT","last-modified":"Wed, 19 Feb 2025 13:54:00 GMT","permissions-policy":"interest-cohort=()","server":"GitHub.com","strict-transport-security":"max-age=31556952","vary":"Accept-Encoding","via":"1.1 varnish","x-cache":"HIT","x-cache-hits":"1","x-fastly-request-id":"06398302adcc54044e22e9cf367dbbf40419d153","x-github-request-id":"E7E3:9FB78:4FA78C:507056:67CFB6DE","x-origin-cache":"HIT","x-proxy-cache":"MISS","x-served-by":"cache-ams2100099-AMS","x-timer":"S1741779227.459879,VS0,VE1"}
Status: 206 Partial Content
Mime: video/mp4 | Charset:
Remote IP: 196.251.71.185:80 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Content-Length":"7070","Content-Range":"bytes 6258688-6265757/6265758","Content-Type":"video/mp4","Date":"Wed, 12 Mar 2025 11:33:47 GMT","ETag":"\"67d084fd-5f9b9e\"","Last-Modified":"Tue, 11 Mar 2025 18:46:21 GMT","Server":"nginx/1.27.4"}
Status: 206 Partial Content
Mime: video/mp4 | Charset:
Remote IP: 196.251.71.185:80 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Content-Length":"5872542","Content-Range":"bytes 393216-6265757/6265758","Content-Type":"video/mp4","Date":"Wed, 12 Mar 2025 11:33:47 GMT","ETag":"\"67d084fd-5f9b9e\"","Last-Modified":"Tue, 11 Mar 2025 18:46:21 GMT","Server":"nginx/1.27.4"}