Snell13 analysis layers
entity

download.kaobeitu.com

domainsandbox · completed · 6217 msjson

Malveillant

malicious

download.kaobeitu.com est classé MALVEILLANT avec une confiance de 99 %. Éléments déterminants : déjà signalé par 1 source; 3 domaines au nom jumeau déjà confirmés malveillants. À décharge : domaine enregistré depuis 7 ans; le modèle ne voit pas de signe d'attaque (17%). 2 technique(s) ATT&CK identifiée(s). Action recommandée : blocage et diffusion des indicateurs.

Risk score

100/ 100

above danger threshold

Confidence

99%

concurring sources

Coverage

100%

sources actually queried

Indicators

3

extracted from the render

ATT&CK techniques

2

across 2 tactics

  1. Ouverture de la page

    +0 msNavigation

    https://download.kaobeitu.com/

  2. Résolution DNS : download.kaobeitu.com

    +1394 msDNS

    122.188.44.139, 122.188.45.51, 218.61.165.129, 116.131.226.149

  3. HTTPS → download.kaobeitu.com

    +1394 msConnection

    122.188.44.139:443 · 8.6 Ko · 808 ms

  4. HTTPS → download.kaobeitu.com

    +3067 msConnection

    122.188.44.139:443 · 13.5 Ko · 3149 ms

  5. HTTPS → download.kaobeitu.com

    +5335 msConnection

    122.188.44.139:443 · 9.6 Ko · 753 ms

  6. Fin de l'analyse

    +6217 msNavigation

    6217 ms

  7. Erreur console

    undatedConsole

    Failed to load resource: the server responded with a status of 404 ()

  8. Erreur console

    undatedConsole

    Failed to load resource: the server responded with a status of 404 ()

The page, as seen from the sandbox

Screenshot of the analysed page, taken in an isolated environment

inert image · hover to reveal