Resultaat

Taak-URL: https://immo-etoiles.fr/

Verdacht niveau: Vermoedelijk gevaarlijk

Beschrijving: Deze pagina vraagt je om actie te ondernemen die vertrouwelijke informatie kan lekken, dit lijkt op een phishingpoging.

Statistieken

6 0 6 6 18 3

Screenshot

Screenshot Thumbnail

HTML data

Lengte Actie
13357

DOM data

Lengte Actie
13357

IP adressen

IP Adres Gerelateerd Domein Bron Type
[2606:4700::6811:190e] cdnjs.cloudflare.com Web Request
[2001:8d8:100f:f000::200] immo-etoiles.fr Web Request
[2606:4700:3036::6815:1b98] use.fontawesome.com Web Request
[2a00:1450:400e:811::2004] www.google.com Web Request
104.17.25.14 cdnjs.cloudflare.com NSLookup
2606:4700::6811:180e cdnjs.cloudflare.com NSLookup
104.17.24.14 cdnjs.cloudflare.com NSLookup
2606:4700::6811:190e cdnjs.cloudflare.com NSLookup
2001:8d8:100f:f000::200 immo-etoiles.fr NSLookup
217.160.0.73 immo-etoiles.fr NSLookup
2606:4700:3037::ac43:8ef5 use.fontawesome.com NSLookup
172.67.142.245 use.fontawesome.com NSLookup
2606:4700:3036::6815:1b98 use.fontawesome.com NSLookup
104.21.27.152 use.fontawesome.com NSLookup
2a00:1450:400e:80f::2004 www.google.com NSLookup
2a00:1450:400e:802::2004 www.google.com NSLookup
142.251.39.100 www.google.com NSLookup
142.250.179.164 www.google.com NSLookup

Verwijzingen

Requestid Verwijzing Bestemming

Downloads

Bestandsnaam SHA256 | URL
0 Bytes | 503 https://immo-etoiles.fr/
[email protected] dedcb23076be667a897f4a90bde0bc80c6a6a58cfe68433bde59546eb9b74eb5 18160 Bytes | 200 https://www.google.com/recaptcha/about/images/[email protected]
all.min.css a361e7885c36bacb3fd9cb068da207c3b9329962cac022d06e28923939f575e8 83981 Bytes | 200 https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.0.0-beta3/css/all.min.css
all.css 9f29f2bbb25602f4bdbd3122c317244f8fd9741106ffd5a412574b02ee794993 33407 Bytes | 200 https://use.fontawesome.com/releases/v5.0.0/css/all.css
fa-brands-400.woff2 45e39853c41558c4922ff1b0895547a99e378f136ec3d9d2f4df15cc269485fa 52648 Bytes | 200 https://use.fontawesome.com/releases/v5.0.0/webfonts/fa-brands-400.woff2
favicon.ico 0 Bytes | 503 https://immo-etoiles.fr/favicon.ico

Detectie

Tijdstempel Detectieregel Type Item
2025-03-05T02:16:51.890251+00:00 html_phishing_fakecaptcha_006 HTML
2025-03-05T02:16:51.905808+00:00 html_phishing_fakecaptcha_007 HTML
2025-03-05T02:16:51.748403+00:00 nl_url_keyword_redirect_suspect_001 URL https://www.google.com/recaptcha/about/images/[email protected]

Verzoeken

Request 621 https://immo-etoiles.fr/

Domein: immo-etoiles.fr

Methode: GET Bron: Document Status: 200

Request 622 https://www.google.com/recaptcha/about/images/[email protected]

Domein: www.google.com

Methode: GET Bron: Image Status: 200

Request 623 https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.0.0-beta3/css/all.min.css

Domein: cdnjs.cloudflare.com

Methode: GET Bron: Stylesheet Status: 200

Request 624 https://use.fontawesome.com/releases/v5.0.0/css/all.css

Domein: use.fontawesome.com

Methode: GET Bron: Stylesheet Status: 200

Request 625 https://use.fontawesome.com/releases/v5.0.0/webfonts/fa-brands-400.woff2

Domein: use.fontawesome.com

Methode: GET Bron: Font Status: 200

Request 626 https://immo-etoiles.fr/favicon.ico

Domein: immo-etoiles.fr

Methode: GET Bron: Other Status: 200

Antwoorden

Response 625 https://immo-etoiles.fr/

Status: 200

Mime: text/html | Charset:

Remote IP: [2001:8d8:100f:f000::200]:443 | Protocol: h2

Beveiligingsstatus: secure | Uitgever: Sectigo RSA Domain Validation Secure Server CA

Headers:

{"content-encoding":"gzip","content-type":"text/html; charset=UTF-8","date":"Wed, 05 Mar 2025 02:16:48 GMT","server":"Apache","x-powered-by":"PHP/8.1.31"}
Response 626 https://www.google.com/recaptcha/about/images/[email protected]

Status: 200

Mime: image/png | Charset:

Remote IP: [2a00:1450:400e:811::2004]:443 | Protocol: h3

Beveiligingsstatus: secure | Uitgever: WR2

Headers:

{"accept-ranges":"bytes","age":"1834","alt-svc":"h3=\":443\"; ma=2592000,h3-29=\":443\"; ma=2592000","cache-control":"public, max-age=3000","content-length":"18160","content-security-policy-report-only":"require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/recaptcha","content-type":"image/png","cross-origin-opener-policy":"same-origin-allow-popups; report-to=\"recaptcha\"","cross-origin-resource-policy":"cross-origin","date":"Wed, 05 Mar 2025 01:46:14 GMT","expires":"Wed, 05 Mar 2025 02:36:14 GMT","last-modified":"Wed, 29 Jul 2020 17:15:00 GMT","report-to":"{\"group\":\"recaptcha\",\"max_age\":2592000,\"endpoints\":[{\"url\":\"https://csp.withgoogle.com/csp/report-to/recaptcha\"}]}","server":"sffe","x-content-type-options":"nosniff","x-xss-protection":"0"}
Response 627 https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.0.0-beta3/css/all.min.css

Status: 200

Mime: text/css | Charset:

Remote IP: [2606:4700::6811:190e]:443 | Protocol: h3

Beveiligingsstatus: secure | Uitgever: WE1

Headers:

{"accept-ranges":"bytes","access-control-allow-origin":"*","age":"637340","alt-svc":"h3=\":443\"; ma=86400","cache-control":"public, max-age=30672000","cf-cache-status":"HIT","cf-cdnjs-via":"cfworker/kv","cf-ray":"91b61d060a4b1cbe-AMS","content-encoding":"br","content-length":"14850","content-type":"text/css; charset=utf-8","cross-origin-resource-policy":"cross-origin","date":"Wed, 05 Mar 2025 02:16:48 GMT","etag":"\"619c057b-3a02\"","expires":"Mon, 23 Feb 2026 02:16:48 GMT","last-modified":"Mon, 22 Nov 2021 21:02:51 GMT","nel":"{\"success_fraction\":0.01,\"report_to\":\"cf-nel\",\"max_age\":604800}","priority":"u=0,i=?0","report-to":"{\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=Nth0IqM7oKYhBT95MurV3H2RG20Atl6uwF2PVA87%2FTCVI%2BN9lDgiQXJKeF2mbQrBuQY3MsqWUoSHPcmsoVtnhwhLziTun09LQOsfWTQ2pQwF%2BJzRneoX5XRikHvGYa4TCqc1MGwaCiR10LxWnKtZzxrY\"}],\"group\":\"cf-nel\",\"max_age\":604800}","server":"cloudflare","server-timing":"cfExtPri","strict-transport-security":"max-age=15780000","timing-allow-origin":"*","vary":"Accept-Encoding","x-content-type-options":"nosniff"}
Response 628 https://use.fontawesome.com/releases/v5.0.0/css/all.css

Status: 200

Mime: text/css | Charset:

Remote IP: [2606:4700:3036::6815:1b98]:443 | Protocol: h2

Beveiligingsstatus: secure | Uitgever: WE1

Headers:

{"age":"1064984","alt-svc":"h3=\":443\"; ma=86400","cache-control":"max-age=31556926","cf-cache-status":"HIT","cf-ray":"91b61d0618ea06c0-AMS","content-encoding":"zstd","content-type":"text/css","date":"Wed, 05 Mar 2025 02:16:48 GMT","etag":"W/\"e35d9c4ebaea0573df8e4a9505b72eea\"","last-modified":"Fri, 22 Sep 2023 01:44:05 GMT","nel":"{\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}","report-to":"{\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=ThM2IPwpNe9xhKPEEb3CTpJWQXG18Qan1%2Bw7XNLR9RxM6MSyAbL5I0PjITYExQ4N0LDoRTexnUTv7JfNQXAqUJVUqwjF%2FG%2FDdo27b9Ny5edfnUgZGjcXL%2FNrJMXhs7LUNfMHIhO6DE4CrNE2Egj2IsIV\"}],\"group\":\"cf-nel\",\"max_age\":604800}","server":"cloudflare","server-timing":"cfL4;desc=\"?proto=TCP\u0026rtt=1340\u0026min_rtt=1296\u0026rtt_var=452\u0026sent=7\u0026recv=9\u0026lost=0\u0026retrans=0\u0026sent_bytes=4036\u0026recv_bytes=2411\u0026delivery_rate=3105990\u0026cwnd=225\u0026unsent_bytes=0\u0026cid=e54a9e8cb55f98fa\u0026ts=23\u0026x=0\"","vary":"Accept-Encoding"}
Response 629 https://use.fontawesome.com/releases/v5.0.0/webfonts/fa-brands-400.woff2

Status: 200

Mime: font/woff2 | Charset:

Remote IP: [2606:4700:3036::6815:1b98]:443 | Protocol: h2

Beveiligingsstatus: secure | Uitgever: WE1

Headers:

{"accept-ranges":"bytes","access-control-allow-origin":"*","alt-svc":"h3=\":443\"; ma=86400","cache-control":"max-age=31556926","cf-cache-status":"HIT","cf-ray":"91b61d069a4f5d56-AMS","content-length":"52648","content-type":"font/woff2","date":"Wed, 05 Mar 2025 02:16:48 GMT","etag":"\"657e828fb3a5963706e24cbf9d711bb8\"","last-modified":"Fri, 22 Sep 2023 01:44:04 GMT","nel":"{\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}","report-to":"{\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=y8y8aYt7ltUB%2FB5ejqi2NCh34LJJtnob0KnYFQfXjKPrgzR4UylZ8%2FYCETnE%2FR049oU4vfMYhimdxAFdbMf1WWfF86bfrCJIgL6g%2BJwpSOIjlDFZrPKPktO1OqzdxPv9p5YcUNSdT8ViFCwcRNm9%2BpDs\"}],\"group\":\"cf-nel\",\"max_age\":604800}","server":"cloudflare","server-timing":"cfL4;desc=\"?proto=TCP\u0026rtt=6293\u0026min_rtt=1248\u0026rtt_var=10265\u0026sent=8\u0026recv=11\u0026lost=0\u0026retrans=0\u0026sent_bytes=4035\u0026recv_bytes=2454\u0026delivery_rate=3224880\u0026cwnd=255\u0026unsent_bytes=0\u0026cid=4b292cf99f1c3c2f\u0026ts=404\u0026x=0\"","vary":"Origin, Accept-Encoding"}
Response 630 https://immo-etoiles.fr/favicon.ico

Status: 200

Mime: image/vnd.microsoft.icon | Charset:

Remote IP: [2001:8d8:100f:f000::200]:443 | Protocol: h2

Beveiligingsstatus: secure | Uitgever: Sectigo RSA Domain Validation Secure Server CA

Headers:

{"accept-ranges":"bytes","content-encoding":"gzip","content-length":"8895","content-type":"image/vnd.microsoft.icon","date":"Wed, 05 Mar 2025 02:16:48 GMT","etag":"\"7d26-5f41d3e9b7c78-gzip\"","last-modified":"Tue, 07 Feb 2023 14:48:45 GMT","server":"Apache","vary":"Accept-Encoding"}