EN ES PT
Back to Stats

Captura Visual

Screenshot of login.microsoftonline.us.office.rp1.abangaritest.govshn.net

Informações de Detecção

https://login.microsoftonline.us.office.rp1.abangaritest.govshn.net/a972b02b-2e02-4381-9dda-f8c703e9d5b9/oauth2/authorize?client_id=c6d6a834-c9f1-4770-9f5a-6768dd1676fb&redirect_uri=https://brblogs.gov.teams.microsoft.us.office.rp1.abangaritest.govshn.net&response_type=code%20id_token&scope=openid%20profile%20user.read%20user.readbasic.all&state=openidconnect.authenticationproperties=j0pli0cqomjfsp43bvf2xpiyajj_alzqcrvjk-7bdxmtii_zrirfsprh98zljczpv9srkg7ukjg2qmvge_v2o0sxn65mvr27lcekoqu8zylaoc3osjsyos2mqsyu4_axiapj0n2jezq4isttyrzawuzi0zdsyiqnbf5nqlh06yytelqkibdtegunwumiblmmyhkupq_tlixqj3waj53oz7dehmetrsvrt1gllssycgu&response_mode=form_post&nonce=637784820257468311.njzhn2mymdetodkwmc00nzm5lwiwmjetnmrkowfinjywztm1yzc4ntfizjmtyzgymc00nze3lwjmnjktywi4zjawndaymzm5&x-client-sku=id_net461&x-client-ver=6.7.1.0
Detected Brand
Microsoft
Country
International
Confiança
100%
HTTP Status
200
Report ID
0dfdf1ee-766…
Analyzed
2025-12-28 20:14
Final URL (after redirects)
https://login.microsoftonline.us.office.rp1.abangaritest.govshn.net/a972b02b-2e02-4381-9dda-f8c703e9d5b9/oauth2/authorize?client_id=c6d6a834-c9f1-4770-9f5a-6768dd1676fb&redirect_uri=https://brblogs.gov.teams.microsoft.us.office.rp1.abangaritest.govshn.net&response_type=code%20id_token&scope=openid%20profile%20user.read%20user.readbasic.all&state=openidconnect.authenticationproperties=j0pli0cqomjfsp43bvf2xpiyajj_alzqcrvjk-7bdxmtii_zrirfsprh98zljczpv9srkg7ukjg2qmvge_v2o0sxn65mvr27lcekoqu8zylaoc3osjsyos2mqsyu4_axiapj0n2jezq4isttyrzawuzi0zdsyiqnbf5nqlh06yytelqkibdtegunwumiblmmyhkupq_tlixqj3waj53oz7dehmetrsvrt1gllssycgu&response_mode=form_post&nonce=637784820257468311.njzhn2mymdetodkwmc00nzm5lwiwmjetnmrkowfinjywztm1yzc4ntfizjmtyzgymc00nze3lwjmnjktywi4zjawndaymzm5&x-client-sku=id_net461&x-client-ver=6.7.1.0&sso_reload=true

Hashes de Conteúdo (Similaridade HTML)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T18792E9B0B0207D3B819BC9FEF235E9412B58E144D30B9F75E9A883CD19D6D1CE963629
CONTENT ssdeep
192:QjJqOAUHx9ZaP72eoxvb5aOLa7QodMOqFHnMwVlx9AKYccWYS5+G:pOAB72eoxrLCQuSnM6//cWh5+G

Hashes Visuais (Similaridade de Captura)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
8459717666d95966
VISUAL aHash
0000383b37373737
VISUAL dHash
88e4d2d3e5eee6e6
VISUAL wHash
00003b3f373f3737

Análise de Código

Risk Score 100/100
Nível de Ameaça CRITICAL
⚠️ Phishing Confirmed
🎣 Credential Harvester 🎣 OTP Stealer 🎣 Banking 🎣 Personal Info

🔬 Threat Analysis Report

• Ameaça: Phishing da página de login da Microsoft para roubo de credenciais.
• Alvo: Usuários dos serviços Microsoft, especialmente no setor governamental dos EUA.
• Método: Página de login falsa da Microsoft que rouba credenciais de e-mail, telefone ou Skype.
• Exfil: Desconhecido, provavelmente para um servidor malicioso controlado pelo atacante.
• Indicadores: Discordância de domínio, nome de domínio incomum (abangaritest.govshn.net) sugerindo registro comprometido ou malicioso.
• Risco: CRÍTICO - Potencial para roubo imediato de credenciais, comprometimento da conta e violação de dados.

🔐 Credential Harvesting Forms

📤 Form Action Targets

  • https://login.microsoftonline.us.office.rp1.abangaritest.govshn.net/a972b02b-2e02-4381-9dda-f8c703e9d5b9/login

Similar Websites

Pages with identical visual appearance (based on perceptual hash)

😰
"Nunca pensei que aconteceria comigo"
Isso dizem os 2,3 milhões de vítimas a cada ano. Não espere para ser uma estatística.