EN ES PT
Back to Stats

Visual Capture

Screenshot of mail-sogo.weebly.com

Detection Info

https://mail-sogo.weebly.com/
Detected Brand
SOGo
Country
Unknown
Confidence
95%
HTTP Status
200
Report ID
079de6bf-3dc…
Analyzed
2026-04-06 09:25

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1BED122E1C455DD37435386D9A7F56B0BB792C345CF021944A3F883AB5BCECA0CB226A9
CONTENT ssdeep
96:TkCFuwHmiWSTNtL9VVJwEBFZqX4HFW0SXlHFNKXgX/jK5R:QouwHHRR9pwE5EbPXE

Code Analysis

Risk Score 70/100
Threat Level ALTO
⚠️ Phishing Confirmed

📊 Risk Score Breakdown

Total Risk Score
70/100

🔬 Comprehensive Threat Analysis

Threat Type
SOGo Phishing Landing Page
Target
SOGo users
Attack Method
Phishing webpage
Exfiltration Channel
Form submission (backend endpoint not detected - likely JavaScript-based)
Risk Assessment
LOW - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

🏢 Brand Impersonation Analysis

Impersonated Brand
SOGo
Official Website
N/A
Fake Service
Credential harvesting service

⚔️ Attack Methodology

Primary Method: Search Engine Manipulation

Fake SOGo site positioned to capture victims through SEO tactics, typosquatting, or paid advertising. Serves as entry point for multi-stage attacks including credential theft and malware distribution.

Secondary Method: Standard Phishing Techniques

Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
mail-sogo.weebly.com
Registered
2006-03-29 00:25:07+00:00
Registrar
MarkMonitor, Inc.
Status
Active (older domain)

Hosting Information

Provider
MarkMonitor, Inc.
ASN

🤖 AI-Extracted Threat Intelligence

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.