Loading ...

Play interactive tourEdit tour

Windows Analysis Report FaxGUO65DE.391343-Faa.html

Overview

General Information

Sample Name:FaxGUO65DE.391343-Faa.html
Analysis ID:483553
MD5:e74427d75f8195d70ef9d05eea45dd0b
SHA1:15469949833a848f8a7e7129e821c2b6d9012988
SHA256:e224b02876690367e3a5116e03831c1cdd61d7dc16710ed830db0792477863d1
Infos:

Most interesting Screenshot:

Detection

HTMLPhisher
Score:72
Range:0 - 100
Whitelisted:false
Confidence:100%

Signatures

Phishing site detected (based on favicon image match)
Yara detected HtmlPhish44
Yara detected obfuscated html page
HTML document with suspicious title
Phishing site detected (based on image similarity)
Yara signature match
None HTTPS page querying sensitive user data (password, username or email)
No HTML title found
JA3 SSL client fingerprint seen in connection with other malware
HTML body contains low number of good links
IP address seen in connection with other malware

Classification