Taak-URL: http://196.251.83.134:8080/
Verdacht niveau: Vermoedelijk gevaarlijk
Beschrijving: Deze pagina lijkt een inlogpaneel te zijn voor kwaadwillige activiteiten, mogelijk verbonden met phishing.
17 | 0 | 20 | 20 | 11 | 5 |
Lengte | Actie |
---|---|
16021 |
Lengte | Actie |
---|---|
16021 |
IP Adres | Gerelateerd Domein | Bron Type |
---|---|---|
196.251.83.134 | 196.251.83.134 | Web Request |
[2606:50c0:8000::153] | purecatamphetamine.github.io | Web Request |
196.251.83.134 | 196.251.83.134 | NSLookup |
185.199.110.153 | purecatamphetamine.github.io | NSLookup |
2606:50c0:8000::153 | purecatamphetamine.github.io | NSLookup |
185.199.109.153 | purecatamphetamine.github.io | NSLookup |
2606:50c0:8001::153 | purecatamphetamine.github.io | NSLookup |
2606:50c0:8002::153 | purecatamphetamine.github.io | NSLookup |
185.199.111.153 | purecatamphetamine.github.io | NSLookup |
2606:50c0:8003::153 | purecatamphetamine.github.io | NSLookup |
185.199.108.153 | purecatamphetamine.github.io | NSLookup |
Requestid | Verwijzing | Bestemming |
---|
Bestandsnaam | SHA256 | | | URL |
---|---|---|---|
4a2cc6da0e8f3d5a2a29d996c9f27167c18ce15166f19e05f8da5228fa14e378 | 7834 Bytes | 200 | http://196.251.83.134:8080/ | |
fontawesome.min.css | 863ab50a39fc203ca8f614cef14c6cc700ee64bfeacd41426dce9ef8cbd98509 | 80651 Bytes | 200 | http://196.251.83.134:8080/assets/fontawesome/css/fontawesome.min.css |
style.css | 002a20bb327c239893a00b908f0ed4cebb527a2957e61aa49528b71a6a450490 | 3504 Bytes | 200 | http://196.251.83.134:8080/assets/fonts/icons/style.css |
all.min.css | 01b035efb5dfa529c512f82962ed633328222da6f33c224244806d4798c67349 | 101784 Bytes | 200 | http://196.251.83.134:8080/assets/fontawesome/css/all.min.css |
style.css | 192a731c7357c9cc21c2ed31feb497561738fbb7353e047d3eb30bf06075c7f5 | 1385 Bytes | 200 | http://196.251.83.134:8080/assets/fonts/icons/permissions/style.css |
style.css | e09bb0962eaf03380ebd592134c4cbccd9a9dbe0cad5d8c886c42e50c078e728 | 1650 Bytes | 200 | http://196.251.83.134:8080/assets/fonts/mulish/style.css |
1Ptyg83HX_SGhgqO0yLcmjzUAuWexZNR8aevGw.woff2 | ad234f0985f2142bb1fa3a281ddf2511d320f84f73422df2b2384f115b4b9131 | 11232 Bytes | 200 | http://196.251.83.134:8080/assets/fonts/mulish/1Ptyg83HX_SGhgqO0yLcmjzUAuWexZNR8aevGw.woff2 |
main.397ec292.css | 5bf31c83371902b8a44eeaadddcc1dad52b39d074bc3c0613df9ead6850a6a6c | 675244 Bytes | 200 | http://196.251.83.134:8080/static/css/main.397ec292.css |
favicon-32x32.png | b26651525e75ecd609b482e0d3dfad4cbc6e86670e73d06a787be342b042e877 | 2052 Bytes | 200 | http://196.251.83.134:8080/assets/fav/favicon-32x32.png |
main.cbf3a9c3.js | 66b5c9a3b43962a9cc82e4d856f78d34af0b35863a3c941cd15228c20629f723 | 3818638 Bytes | 200 | http://196.251.83.134:8080/static/js/main.cbf3a9c3.js |
login_poster.jpg | 82b5025eca7e248ab6a54077b939835ddb259853fcc94b258cd1a39abece9fd0 | 18418 Bytes | 200 | http://196.251.83.134:8080/assets/images/login_poster.jpg |
fa-solid-900.woff2 | d27bc752105c079f8a516e9142406a9fc12cbb409f9bf8681f2ddfe0360b52a6 | 150472 Bytes | 200 | http://196.251.83.134:8080/assets/fontawesome/webfonts/fa-solid-900.woff2 |
hook.svg | 4a2cc6da0e8f3d5a2a29d996c9f27167c18ce15166f19e05f8da5228fa14e378 | 7834 Bytes | 200 | http://196.251.83.134:8080/images/hook.svg |
login_sd.mp4 | 6a6bf9bb5f4c7c56da26d193ffca2cf5900d08e250373c9c0ff7ae1a86d37af4 | 6265758 Bytes | 206 | http://196.251.83.134:8080/assets/images/login_sd.mp4 |
US.svg | 0368f33db1cc70ef5eee2a5de99571b65d394d8964f4824ce3919d45998775c0 | 1352 Bytes | 200 | https://purecatamphetamine.github.io/country-flag-icons/3x2/US.svg |
login_sd.mp4 | 6a6bf9bb5f4c7c56da26d193ffca2cf5900d08e250373c9c0ff7ae1a86d37af4 | 6265758 Bytes | 206 | http://196.251.83.134:8080/assets/images/login_sd.mp4 |
login_sd.mp4 | 6a6bf9bb5f4c7c56da26d193ffca2cf5900d08e250373c9c0ff7ae1a86d37af4 | 6265758 Bytes | 206 | http://196.251.83.134:8080/assets/images/login_sd.mp4 |
Tijdstempel | Detectieregel | Type | Item |
---|---|---|---|
2025-03-10T15:22:53.82208+00:00 | nl_url_keyword_inlog_phishing_001 | URL | http://196.251.83.134:8080/assets/images/login_poster.jpg |
2025-03-10T15:22:53.90942+00:00 | nl_url_keyword_inlog_phishing_001 | URL | http://196.251.83.134:8080/assets/images/login_sd.mp4 |
2025-03-10T15:22:53.935826+00:00 | nl_url_keyword_inlog_phishing_001 | URL | http://196.251.83.134:8080/assets/images/login_sd.mp4 |
2025-03-10T15:22:53.94448+00:00 | nl_url_keyword_inlog_phishing_001 | URL | http://196.251.83.134:8080/assets/images/login_sd.mp4 |
2025-03-10T15:22:54.039504+00:00 | nl_html_c2_hookbot_002 | HTML |
Domein: 196.251.83.134
Methode: GET Bron: Document Status: 200
Domein: 196.251.83.134
Methode: GET Bron: Stylesheet Status: 200
Domein: 196.251.83.134
Methode: GET Bron: Stylesheet Status: 200
Domein: 196.251.83.134
Methode: GET Bron: Stylesheet Status: 200
Domein: 196.251.83.134
Methode: GET Bron: Stylesheet Status: 200
Domein: 196.251.83.134
Methode: GET Bron: Stylesheet Status: 200
Domein: 196.251.83.134
Methode: GET Bron: Font Status: 200
Domein: 196.251.83.134
Methode: GET Bron: XHR Status: 200
Domein: 196.251.83.134
Methode: GET Bron: Other Status: 200
Domein:
Methode: GET Bron: Stylesheet Status: 200
Domein: 196.251.83.134
Methode: GET Bron: XHR Status: 200
Domein:
Methode: GET Bron: Script Status: 200
Domein:
Methode: GET Bron: Image Status: 200
Domein: 196.251.83.134
Methode: GET Bron: Image Status: 200
Domein: 196.251.83.134
Methode: GET Bron: Font Status: 200
Domein: 196.251.83.134
Methode: GET Bron: Image Status: 200
Domein: 196.251.83.134
Methode: GET Bron: Media Status: 206
Domein: purecatamphetamine.github.io
Methode: GET Bron: Image Status: 200
Domein: 196.251.83.134
Methode: GET Bron: Media Status: 206
Domein: 196.251.83.134
Methode: GET Bron: Media Status: 206
Status: 200 OK
Mime: text/html | Charset:
Remote IP: 196.251.83.134:8080 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"text/html","Date":"Mon, 10 Mar 2025 15:22:45 GMT","ETag":"W/\"67cde25b-1e9a\"","Last-Modified":"Sun, 09 Mar 2025 18:47:55 GMT","Server":"nginx/1.27.4","Transfer-Encoding":"chunked","Vary":"Accept-Encoding"}
Status: 200 OK
Mime: text/css | Charset:
Remote IP: 196.251.83.134:8080 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"text/css","Date":"Mon, 10 Mar 2025 15:22:45 GMT","ETag":"W/\"67cddfa3-13b0b\"","Last-Modified":"Sun, 09 Mar 2025 18:36:19 GMT","Server":"nginx/1.27.4","Transfer-Encoding":"chunked","Vary":"Accept-Encoding"}
Status: 200 OK
Mime: text/css | Charset:
Remote IP: 196.251.83.134:8080 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"text/css","Date":"Mon, 10 Mar 2025 15:22:45 GMT","ETag":"W/\"67cddfa3-db0\"","Last-Modified":"Sun, 09 Mar 2025 18:36:19 GMT","Server":"nginx/1.27.4","Transfer-Encoding":"chunked","Vary":"Accept-Encoding"}
Status: 200 OK
Mime: text/css | Charset:
Remote IP: 196.251.83.134:8080 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"text/css","Date":"Mon, 10 Mar 2025 15:22:45 GMT","ETag":"W/\"67cddfa3-18d98\"","Last-Modified":"Sun, 09 Mar 2025 18:36:19 GMT","Server":"nginx/1.27.4","Transfer-Encoding":"chunked","Vary":"Accept-Encoding"}
Status: 200 OK
Mime: text/css | Charset:
Remote IP: 196.251.83.134:8080 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"text/css","Date":"Mon, 10 Mar 2025 15:22:45 GMT","ETag":"W/\"67cddfa3-569\"","Last-Modified":"Sun, 09 Mar 2025 18:36:19 GMT","Server":"nginx/1.27.4","Transfer-Encoding":"chunked","Vary":"Accept-Encoding"}
Status: 200 OK
Mime: text/css | Charset:
Remote IP: 196.251.83.134:8080 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"text/css","Date":"Mon, 10 Mar 2025 15:22:45 GMT","ETag":"W/\"67cddfa3-672\"","Last-Modified":"Sun, 09 Mar 2025 18:36:19 GMT","Server":"nginx/1.27.4","Transfer-Encoding":"chunked","Vary":"Accept-Encoding"}
Status: 200 OK
Mime: font/woff2 | Charset:
Remote IP: 196.251.83.134:8080 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Accept-Ranges":"bytes","Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Length":"11232","Content-Type":"font/woff2","Date":"Mon, 10 Mar 2025 15:22:45 GMT","ETag":"\"67cddfa3-2be0\"","Last-Modified":"Sun, 09 Mar 2025 18:36:19 GMT","Server":"nginx/1.27.4"}
Status: 200 OK
Mime: text/css | Charset:
Remote IP: 196.251.83.134:8080 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"text/css","Date":"Mon, 10 Mar 2025 15:22:45 GMT","ETag":"W/\"67cde25b-a4dac\"","Last-Modified":"Sun, 09 Mar 2025 18:47:55 GMT","Server":"nginx/1.27.4","Transfer-Encoding":"chunked","Vary":"Accept-Encoding"}
Status: 200 OK
Mime: image/png | Charset:
Remote IP: 196.251.83.134:8080 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Accept-Ranges":"bytes","Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Length":"2052","Content-Type":"image/png","Date":"Mon, 10 Mar 2025 15:22:45 GMT","ETag":"\"67cddfa3-804\"","Last-Modified":"Sun, 09 Mar 2025 18:36:19 GMT","Server":"nginx/1.27.4"}
Status: 200 OK
Mime: text/css | Charset:
Remote IP: :0 | Protocol: blob
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Content-Length":"675244","Content-Type":"text/css"}
Status: 200 OK
Mime: application/javascript | Charset:
Remote IP: 196.251.83.134:8080 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"application/javascript","Date":"Mon, 10 Mar 2025 15:22:45 GMT","ETag":"W/\"67cde25b-3a448e\"","Last-Modified":"Sun, 09 Mar 2025 18:47:55 GMT","Server":"nginx/1.27.4","Transfer-Encoding":"chunked","Vary":"Accept-Encoding"}
Status: 200 OK
Mime: application/javascript | Charset:
Remote IP: :0 | Protocol: blob
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Content-Length":"3818638","Content-Type":"application/javascript"}
Status: 200 OK
Mime: image/png | Charset:
Remote IP: :0 | Protocol: data
Beveiligingsstatus: unknown | Uitgever:
Headers:
{"Content-Type":"image/png"}
Status: 200 OK
Mime: image/jpeg | Charset:
Remote IP: 196.251.83.134:8080 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Accept-Ranges":"bytes","Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Length":"18418","Content-Type":"image/jpeg","Date":"Mon, 10 Mar 2025 15:22:48 GMT","ETag":"\"67cddfa3-47f2\"","Last-Modified":"Sun, 09 Mar 2025 18:36:19 GMT","Server":"nginx/1.27.4"}
Status: 200 OK
Mime: font/woff2 | Charset:
Remote IP: 196.251.83.134:8080 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Accept-Ranges":"bytes","Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Length":"150472","Content-Type":"font/woff2","Date":"Mon, 10 Mar 2025 15:22:48 GMT","ETag":"\"67cddfa3-24bc8\"","Last-Modified":"Sun, 09 Mar 2025 18:36:19 GMT","Server":"nginx/1.27.4"}
Status: 200 OK
Mime: text/html | Charset:
Remote IP: 196.251.83.134:8080 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"text/html","Date":"Mon, 10 Mar 2025 15:22:48 GMT","ETag":"W/\"67cde25b-1e9a\"","Last-Modified":"Sun, 09 Mar 2025 18:47:55 GMT","Server":"nginx/1.27.4","Transfer-Encoding":"chunked","Vary":"Accept-Encoding"}
Status: 206 Partial Content
Mime: video/mp4 | Charset:
Remote IP: 196.251.83.134:8080 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Connection":"keep-alive","Content-Length":"6265758","Content-Range":"bytes 0-6265757/6265758","Content-Type":"video/mp4","Date":"Mon, 10 Mar 2025 15:22:48 GMT","ETag":"\"67cddfa3-5f9b9e\"","Last-Modified":"Sun, 09 Mar 2025 18:36:19 GMT","Server":"nginx/1.27.4"}
Status: 200
Mime: image/svg+xml | Charset:
Remote IP: [2606:50c0:8000::153]:443 | Protocol: h2
Beveiligingsstatus: secure | Uitgever: Sectigo RSA Domain Validation Secure Server CA
Headers:
{"accept-ranges":"bytes","access-control-allow-origin":"*","age":"540","cache-control":"max-age=600","content-encoding":"gzip","content-length":"480","content-type":"image/svg+xml","date":"Mon, 10 Mar 2025 15:22:48 GMT","etag":"W/\"67b5e278-548\"","expires":"Wed, 19 Feb 2025 14:07:02 GMT","last-modified":"Wed, 19 Feb 2025 13:54:00 GMT","permissions-policy":"interest-cohort=()","server":"GitHub.com","strict-transport-security":"max-age=31556952","vary":"Accept-Encoding","via":"1.1 varnish","x-cache":"HIT","x-cache-hits":"4","x-fastly-request-id":"05014b411f45b25df54be1bb7e21f6c2c78e39fe","x-github-request-id":"3E8E:5F414:1452A1F:1489F2D:67B5E32F","x-origin-cache":"HIT","x-proxy-cache":"HIT","x-served-by":"cache-ams21041-AMS","x-timer":"S1741620168.348836,VS0,VE1"}
Status: 206 Partial Content
Mime: video/mp4 | Charset:
Remote IP: 196.251.83.134:8080 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Content-Length":"7070","Content-Range":"bytes 6258688-6265757/6265758","Content-Type":"video/mp4","Date":"Mon, 10 Mar 2025 15:22:48 GMT","ETag":"\"67cddfa3-5f9b9e\"","Last-Modified":"Sun, 09 Mar 2025 18:36:19 GMT","Server":"nginx/1.27.4"}
Status: 206 Partial Content
Mime: video/mp4 | Charset:
Remote IP: 196.251.83.134:8080 | Protocol: http/1.1
Beveiligingsstatus: insecure | Uitgever:
Headers:
{"Access-Control-Allow-Headers":"X-Requested-With,X-Token-Auth,Cache-Control,Content-Type,Authorization","Access-Control-Allow-Methods":"GET, POST, PUT, DELETE, OPTIONS","Access-Control-Allow-Origin":"*","Content-Length":"5872542","Content-Range":"bytes 393216-6265757/6265758","Content-Type":"video/mp4","Date":"Mon, 10 Mar 2025 15:22:48 GMT","ETag":"\"67cddfa3-5f9b9e\"","Last-Modified":"Sun, 09 Mar 2025 18:36:19 GMT","Server":"nginx/1.27.4"}