Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

bohlepropiedades.com #5708

Closed
g0d33p3rsec opened this issue Jan 5, 2025 · 0 comments
Closed

bohlepropiedades.com #5708

g0d33p3rsec opened this issue Jan 5, 2025 · 0 comments
Assignees
Labels
Phishing Phishing is the fraudulent attempt to obtain sensitive information or data, such as usernames, passw

Comments

@g0d33p3rsec
Copy link
Collaborator

Comments

Current host of the phishing kit I have been tracking for the past year, last reported with Phishing-Database/phishing#549. Additional information on this activity cluster can be found at https://github.com/g0d33p3rsec/phishing/wiki/unknown-phishing-kit-cluster. See also: Phishing-Database/phishing#631

The external sources also includes the images hosted at imagizer.imageshack.com which the actor tends to reuse across hosts.

Wildcard domain records

bohlepropiedades.com|phishing

Sub-Domain records

No response

Hosts (RFC:952) specific records, not used by DNS RPZ firewalls

No response

Safe Search records

No response

Screenshots

Screenshot, click to expand

Screenshot 2025-01-05 121936
Screenshot 2025-01-05 121922
Screenshot 2025-01-05 121818
Screenshot 2025-01-05 121729
Screenshot 2025-01-05 121716
Screenshot 2025-01-05 121702
Screenshot 2025-01-05 121646
Screenshot 2025-01-05 121633
Screenshot 2025-01-05 121618
Screenshot 2025-01-05 121604
Screenshot 2025-01-05 121547
Screenshot 2025-01-05 121447
Screenshot 2025-01-05 121428
Screenshot 2025-01-05 121407
Screenshot 2025-01-05 121344
Screenshot 2025-01-05 121325
Screenshot 2025-01-05 121244
Screenshot 2025-01-05 121227
Screenshot 2025-01-05 121214
Screenshot 2025-01-05 121200
Screenshot 2025-01-05 121035
Screenshot 2025-01-05 120953
Screenshot 2025-01-05 120937
Screenshot 2025-01-05 120920
Screenshot 2025-01-05 120844
Screenshot 2025-01-05 120747
Screenshot 2025-01-05 120730
Screenshot 2025-01-05 120656
Screenshot 2025-01-05 120639
Screenshot 2025-01-05 120621
Screenshot 2025-01-05 120604
Screenshot 2025-01-05 120549
Screenshot 2025-01-05 120534
Screenshot 2025-01-05 120516
Screenshot 2025-01-05 120458
Screenshot 2025-01-05 120355
Screenshot 2025-01-05 120300
Screenshot 2025-01-05 120243
Screenshot 2025-01-05 120220
Screenshot 2025-01-05 120142
Screenshot 2025-01-05 120055
Screenshot 2025-01-05 115911
Screenshot 2025-01-05 115810
Screenshot 2025-01-05 115731
Screenshot 2025-01-05 122349
Screenshot 2025-01-05 112646

Links to external sources

https://bohlepropiedades.com/M00wMzhtM2I3dzNTNU0=
https://bohlepropiedades.com/M042dDV6M0M1Vzc0M00=
https://bohlepropiedades.com/M081VTBtMW80VTZsNDg= 
https://bohlepropiedades.com/M0I1YjZYNVozZTFJNmE= 
https://bohlepropiedades.com/M0I2VzVZMUs3SDdxOXI=
https://bohlepropiedades.com/M0Q2cDVqM1Q0MzNPMm4=
https://bohlepropiedades.com/M0U2VTJWOG82WDZ5MUQ=
https://bohlepropiedades.com/M0c2NTVxMjczcDZiM2g=
https://bohlepropiedades.com/M1A2QjVXNG01cTdRMHY=
https://bohlepropiedades.com/M1E2VDVtNVMyNDhuMlg= 
https://bohlepropiedades.com/M1Y0NzZtOEgxTzRkMW4= 
https://bohlepropiedades.com/M1Y2ODFIOEIxczNEOFo=
https://bohlepropiedades.com/M1o2MTV4Mjk1UTBYMlA= 
https://bohlepropiedades.com/M242VzB6Nkw0UjY3OGc=
https://bohlepropiedades.com/M282aTVJMlczeDQ2Nkk= 
https://bohlepropiedades.com/M2E2ZTV1MmQ1TTJ0OGw= 
https://bohlepropiedades.com/M2I2WDU3NXcwVDhqMGk= 
https://bohlepropiedades.com/M2M2VzV4M081RzRJMkU=
https://bohlepropiedades.com/M2M2aDVsMXg5VThJNXE=
https://bohlepropiedades.com/M2Y2dTVMMVc4TjZrNjc=
https://bohlepropiedades.com/M2oyZjdBN0EwMTcwMjc=
https://bohlepropiedades.com/M2w1WjQyNFYwOTI5MGY=
https://bohlepropiedades.com/M2w2VjVHMzY2YzdIMDU= 
https://bohlepropiedades.com/M3A2eDJGMDA1UDl5NEU=
https://bohlepropiedades.com/M3AydDkzM08yODVqOW4=
https://bohlepropiedades.com/M3E1RjRHNEYwVjFmNmg=
https://bohlepropiedades.com/M3E2YzVaM1owODRNOGE=
https://bohlepropiedades.com/M3E2YzVaM1owODRNOGE= 
https://bohlepropiedades.com/M3M2QzU2NDAzQjB4Mkc= 
https://bohlepropiedades.com/M3M2VTVVM1k4QjgyODI= 
https://bohlepropiedades.com/M3Q0VDliODc3VzhMNHM= 
https://bohlepropiedades.com/M3g2RzRuOUQ4YzFLOUc=
https://bohlepropiedades.com/M3k0ajlJM1E4ZzFDNkI=
https://bohlepropiedades.com/M3o2TTVuNEs2ZzFvOVk=
https://bohlepropiedades.com/MWMwajdwMDY3aDdkMno=
https://bohlepropiedades.com/Mjc4bDM5MjYxNjZ1Nzc= 
https://bohlepropiedades.com/Mjk4MzZPM2MzTjNaOEs=
https://bohlepropiedades.com/MkwyRjhiNFU4aTRZN0Q=
https://bohlepropiedades.com/MmE4OTY5M00zZDNuODM=
https://bohlepropiedades.com/Mnk4ZDM5MjQxdDY5N3A=
https://bohlepropiedades.com/MzI2RzB1OWo3ZDlsOGw=
https://bohlepropiedades.com/MzIxbDdHOUI1WTE5NVk= 
https://bohlepropiedades.com/MzM2ODVHMlAySDdkM1I=
https://bohlepropiedades.com/MzQ0WDdaMkE3QTFnMXc=
https://bohlepropiedades.com/MzQ2UDVLMnA5SjlBNlM=
https://bohlepropiedades.com/MzY2ZzV2M2wwVjhDOWM=
https://bohlepropiedades.com/Mzk2NDU5MXg5VjNqMlI=
https://bohlepropiedades.com/MzkzRDJLNlU0OTR0OWM=
https://imagizer.imageshack.com/img923/3462/jn2ZxO.jpg
https://imagizer.imageshack.com/img923/7638/AKR4gf.jpg
https://imagizer.imageshack.com/img922/227/bwY78E.jpg
https://imagizer.imageshack.com/img922/8605/eII6oA.jpg
https://imagizer.imageshack.com/img922/3770/b8W8Li.jpg
https://imagizer.imageshack.com/img924/7025/eylqun.jpg
https://imagizer.imageshack.com/img924/647/jAv2my.jpg
https://imagizer.imageshack.com/img922/6047/MmQ5e9.jpg
https://imagizer.imageshack.com/img923/2284/7QVYRQ.jpg
https://imagizer.imageshack.com/img923/1240/fJLxOm.jpg
https://imagizer.imageshack.com/img923/8752/2V8o68.jpg
https://imagizer.imageshack.com/img922/9182/LVjCgb.jpg
https://imagizer.imageshack.com/img923/5258/yJC6Ne.jpg
https://imagizer.imageshack.com/img922/6101/B80s00.jpg
https://imagizer.imageshack.com/img922/4754/hF3SiV.jpg
https://imagizer.imageshack.com/img924/9461/73t8aq.png
https://imagizer.imageshack.com/img924/3420/H0A7rG.jpg
https://imagizer.imageshack.com/img924/1897/uq2ZFg.jp
https://imagizer.imageshack.com/img922/5135/eWm4ie.jpg
https://imagizer.imageshack.com/img923/4982/TYb06w.jpg
https://imagizer.imageshack.com/img924/754/nrvoSA.jpg
https://imagizer.imageshack.com/img923/1294/9BEamF.jpg
https://imagizer.imageshack.com/img922/5426/TiNGVQ.jpg
https://imagizer.imageshack.com/img922/3999/qEZSZ5.png
https://imagizer.imageshack.com/img923/9075/J6fwjc.jpg
https://imagizer.imageshack.com/img922/6886/aYjOnH.jpg
https://imagizer.imageshack.com/img922/8223/QMSnu1.jpg
https://imagizer.imageshack.com/img924/6782/SvUYWM.jpg
https://imagizer.imageshack.com/img924/5586/gTr5BB.jpg
https://imagizer.imageshack.com/img922/2017/Q3Gp5t.png
https://imagizer.imageshack.com/img924/6216/IVLiXw.jpg
https://imagizer.imageshack.com/img924/6216/IVLiXw.jpg
https://imagizer.imageshack.com/img923/9959/zjBVtF.jpg
https://imagizer.imageshack.com/img922/1883/r84i3H.jpg
https://imagizer.imageshack.com/img923/4744/YTaBtK.jpg
https://imagizer.imageshack.com/img922/4734/rxRtMH.png
https://imagizer.imageshack.com/img923/4679/1tivIi.png
https://imagizer.imageshack.com/img922/8400/Ddwl5I.jpg
https://imagizer.imageshack.com/img923/3060/hUpW7B.jpg
https://imagizer.imageshack.com/img922/2810/QghWSi.jpg
https://imagizer.imageshack.com/img923/4215/zPJdNs.jpg
https://imagizer.imageshack.com/img922/9600/r86MBY.jpg
https://imagizer.imageshack.com/img922/6101/B80s00.jpg
https://imagizer.imageshack.com/img923/7195/wpo8kg.jpg
https://imagizer.imageshack.com/img923/7638/AKR4gf.jpg
https://imagizer.imageshack.com/img922/7815/VmIJvf.png
https://imagizer.imageshack.com/img923/6606/YlDuHs.png
https://imagizer.imageshack.com/img923/6310/lttY4S.jpg

logs from uBlock Origin

N/A

@g0d33p3rsec g0d33p3rsec added the Phishing Phishing is the fraudulent attempt to obtain sensitive information or data, such as usernames, passw label Jan 5, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Phishing Phishing is the fraudulent attempt to obtain sensitive information or data, such as usernames, passw
Projects
None yet
Development

No branches or pull requests

2 participants