Click to jump to signature section
Source: http://dimfa.elcompanies.digitalillustra.com/macco/index.html | Joe Sandbox AI: Score: 8 Reasons: The brand 'Estee Lauder Companies' is well-known and typically associated with the domain 'elcompanies.com'., The URL 'dimfa.elcompanies.digitalillustra.com' contains the legitimate brand name but is appended with 'digitalillustra.com', which is not a known domain associated with Estee Lauder Companies., The presence of 'digitalillustra.com' as the main domain is suspicious and could indicate a phishing attempt., The URL structure suggests a potential phishing attempt due to the use of a third-party domain., The input fields request sensitive information such as corporate email and Windows password, which is common in phishing attempts. DOM: 0.0.pages.csv |
Source: http://dimfa.elcompanies.digitalillustra.com/macco/index.html | HTTP Parser: Number of links: 0 |
Source: http://dimfa.elcompanies.digitalillustra.com/macco/index.html | HTTP Parser: Title: ELC Authentication does not match URL |
Source: http://dimfa.elcompanies.digitalillustra.com/macco/index.html | HTTP Parser: Has password / email / username input fields |
Source: http://dimfa.elcompanies.digitalillustra.com/macco/index.html | HTTP Parser: Form action: zfR09.php |
Source: http://dimfa.elcompanies.digitalillustra.com/macco/index.html | HTTP Parser: <input type="password" .../> found |
Source: http://dimfa.elcompanies.digitalillustra.com/macco/index.html | HTTP Parser: No <meta name="author".. found |
Source: http://dimfa.elcompanies.digitalillustra.com/macco/index.html | HTTP Parser: No <meta name="copyright".. found |
Source: unknown | HTTPS traffic detected: 184.28.90.27:443 -> 192.168.2.4:49748 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 184.28.90.27:443 -> 192.168.2.4:49753 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 20.109.210.53:443 -> 192.168.2.4:49761 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 20.109.210.53:443 -> 192.168.2.4:49768 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 13.107.246.45:443 -> 192.168.2.4:49769 version: TLS 1.2 |
Source: unknown | TCP traffic detected without corresponding DNS query: 173.222.162.32 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 2.22.50.144 |
Source: unknown | TCP traffic detected without corresponding DNS query: 2.22.50.144 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: unknown | TCP traffic detected without corresponding DNS query: 13.107.246.45 |
Source: global traffic | HTTP traffic detected: HTTP/1.1 200 OKConnection: Keep-AliveKeep-Alive: timeout=5, max=100content-type: text/htmllast-modified: Fri, 08 Nov 2024 19:59:11 GMTaccept-ranges: bytescontent-encoding: gzipvary: Accept-Encoding,User-Agentcontent-length: 2736date: Sat, 16 Nov 2024 07:18:56 GMTserver: LiteSpeedData Raw: 1f 8b 08 00 00 00 00 00 00 03 ed 5b fd 6e db 38 12 ff df 4f 31 ab 03 f6 da a0 b2 1d b7 bd 6b 13 db 8b 5c 92 bb 16 48 bb 41 92 62 f7 50 14 0b 8a 1a 4b dc 50 a4 8e a4 ec 78 71 2f 74 af 71 4f 76 18 4a f2 67 12 5b 6e 12 ec 1e ea 3f 12 49 1c f1 37 1c 0e e7 8b 54 3f 45 16 0f 5b 00 00 fd 0c 1d 03 9e 32 63 d1 0d 82 c2 8d c2 37 c1 62 53 ea 5c 1e e2 bf 0a 31 1e 04 3f 87 9f 8e c2 63 9d e5 cc 89 48 62 00 5c 2b 87 ca 0d 82 f7 a7 03 8c 13 5c 7a 53 b1 0c 07 c1 58 e0 24 d7 c6 2d 10 4f 44 ec d2 41 8c 63 c1 31 f4 37 2f 40 28 e1 04 93 a1 e5 4c e2 60 bf ee c8 09 27 71 78 7a 76 0c 47 85 4b 51 39 c1 99 13 5a f5 3b 65 4b 49 65 b9 11 b9 5b 1d 85 6f a3 9f 35 7c 10 d0 38 ec 41 a7 13 8b 6c c4 da 28 39 0d 43 09 b4 6d ae b3 8e ce 51 b1 ac f3 f3 a7 f7 1d ae d5 48 24 9d ab 14 33 3c f6 d7 85 f1 98 ed d7 af df 74 f7 5f c6 2f d9 cb f6 af 36 18 f6 3b 25 6e c5 84 14 ea 1a 0c ca 41 20 b8 56 01 b8 69 8e 83 40 64 2c c1 ce 4d 58 3e 4b 0d 8e 1a b0 82 d6 21 86 92 15 31 9a b6 e0 3a 58 83 b2 a9 36 8e 17 0e 9e 12 d3 4d 25 da 14 d1 d5 80 0e 6f 5c 87 5b 3b 17 79 43 50 6e 6d 27 d2 da 59 67 58 1e be 6c bf 6a ef 87 bc b0 4e 67 6d ea b6 09 0b bb 40 5b 67 0a ee 0a 83 4f 82 56 4a b8 1b ee 77 9f 04 6e a4 95 63 13 b4 3a c3 76 26 d4 93 60 32 29 57 b0 5a fd 4e 69 74 fa df 85 e1 67 31 82 f7 a7 f0 f6 cb b0 d5 8f 74 3c 05 0f 3f 08 62 61 73 c9 a6 07 4a 2b 32 2e 92 59 3b 08 04 be 0d e8 b5 cf a8 62 31 fa 12 86 f3 3e 9e 25 ce f7 f3 fc df df 3d 7b 7f fa fc cb 90 1a 86 ad 7b 3a ad 06 fe 5d 18 2e 75 e8 1f c6 62 0c 22 1e 04 19 5a cb 12 b4 33 0e b8 44 66 46 e2 86 96 7c 2c c6 2b e4 13 c3 f2 1c 4d 00 cc 08 16 46 85 9d 0e 82 11 93 b6 06 5b 22 96 3a 11 2a 8c d8 52 eb 8c a5 25 aa bf 31 8b 67 3a d1 33 36 32 26 54 28 75 a2 c3 54 cb 18 0d 49 c5 f3 53 8f 60 0d ad b2 b8 2b 50 33 92 7a 78 a4 20 42 f9 0e 57 e9 56 69 8d 9e 40 39 86 4d 6f ad 30 22 e7 d2 d4 32 cc e2 f0 2f f7 bc b7 8a ea 07 3d 07 ac 67 d6 bb 8e 03 e8 bd ee e6 37 87 90 a2 48 52 37 bb cd 98 49 84 3a 78 d3 cd 6f 80 15 4e 1f 6e c2 9b 4f ed 2e cd f7 8d 14 46 da 64 a1 45 4e 5e 64 13 1b 44 0b cc 93 0e 82 df 46 17 dd b7 ed 3c cd 03 c8 d0 a5 3a 1e 04 b9 b6 6e 86 e0 89 cb f9 a0 cb 00 62 e6 58 68 1d 4b 70 10 6c 40 2a d1 04 ca d8 a2 5b 98 df 2d 5e 5b 1a f1 98 49 11 7b 07 |