Help
RSS
API
Feed
Maltego
Contact
Domain > dlb214.xyz
×
More information on this domain is in
AlienVault OTX
Is this malicious?
Yes
No
DNS Resolutions
Date
IP Address
2020-07-04
104.27.182.1
(
ClassC
)
2024-12-28
104.21.80.1
(
ClassC
)
Port 80
HTTP/1.1 200 OKDate: Sat, 28 Dec 2024 01:08:40 GMTContent-Type: text/html; charsetUTF-8Transfer-Encoding: chunkedConnection: keep-aliveVary: Accept-Encodingcf-cache-status: DYNAMICReport-To: {endpoints:{url:https:\/\/a.nel.cloudflare.com\/report\/v4?s7tgPsGnfs99wlRMGmWqy2hBDj1P9qxcoi5xgAYIi7nB1LNOfWxbju5gK82p5eap%2BhL6oN%2B06nqbY%2B%2BCb6hzuISGiyABBs8t1NgI3YIjVT0OoXDQYbgEK2xCrO6x4},group:cf-nel,max_age:604800}NEL: {success_fraction:0,report_to:cf-nel,max_age:604800}Server: cloudflareCF-RAY: 8f8da917fb30ef90-PDXalt-svc: h3:443; ma86400server-timing: cfL4;desc?protoTCP&rtt6241&min_rtt6241&rtt_var3120&sent1&recv3&lost0&retrans0&sent_bytes0&recv_bytes49&delivery_rate0&cwnd249&unsent_bytes0&cid0000000000000000&ts0&x0 !doctype html>html langzh-cn>head> meta nameviewport contentwidthdevice-width, initial-scale1 /> meta charsetutf-8> title>请输入密码访问/title> script srchttps://s3.pstatp.com/cdn/expire-1-M/jquery/3.4.1/jquery.min.js>/script> script src/js/layer.min.js>/script> link relstylesheet href/css/layer.css> link relstylesheet href/css/style_mini.css> link relstylesheet href/css/card.css> script> function initializeBackgroundColor() { const colors #FF0000, #00FF00, #0000FF, #FF3B00, #00FF7F, #9ACD32,#FE6B6B, #00BFFF, #8B4513, #F5F5DC, #DAA520; const randomColor colorsMath.floor(Math.random() * colors.length); document.body.style.backgroundColor randomColor; } window.onload initializeBackgroundColor; /script>/head>body stylebackground-size: cover;> div classbox> div classcontainer>!--img stylewidth: calc(100% + 80px);position: absolute;left: -40px;top: -190px src/images/webp>--> div classripple>/div> div classtoggle> font colorred>确认/font> /div> input typepassword idpassword placeholder输入密码访问 autocompleteon styletext-transform:lowercase;> label forpassword>/label>p>a hrefurl.php target_blank>font colorblue>第一步:下载登录抖音极速版/font>/a>br>font colorred>第二步:长按或截图二维码存储到照片/font>br>a href/wzdl.webp>font colorblue>第三步:按步骤查看访问密码/font>/a>br>img src/djimages/lx10.png?1735136148 idimageToToggle width100 alt长按保存到相册 />br>打开APP侧边栏扫一扫上面的二维码br>弹出页面确认按钮一行字的拼音br>【首字母】就是【密码】br>br>font colorred>dlb214.xyz/font>/p> /div> /div> div classsave-card styledisplay: flex;gap: 5px> div> img src/images/xiaologo.png stylewidth: 42px;height: 42px> /div> div classapple-text styleflex: 1> div> span>点击下方的“/span>img src/images/share.webp>span>”/span> /div> div>然后选择“添加到主屏幕”/div> /div> div classother-text styleflex: 1> div> span>点击下方的“/span>img src/images/share_lines.webp>span>”/span> /div> div>然后选择“添加到收藏夹”/div> /div> div classcard-pointer>/div> div classclose-btn> svg xmlnshttp://www.w3.org/2000/svg width18 height18 viewBox0 0 384 512> path strokeblack stroke-width2 dM342.6 150.6c12.5-12.5 12.5-32.8 0-45.3s-32.8-12.5-45.3 0L192 210.7 86.6 105.4c-12.5-12.5-32.8-12.5-45.3 0s-12.5 32.8 0 45.3L146.7 256 41.4 361.4c-12.5 12.5-12.5 32.8 0 45.3s32.8 12.5 45.3 0L192 301.3 297.4 406.6c12.5 12.5 32.8 12.5 45.3 0s12.5-32.8 0-45.3L237.3 256 342.6 150.6z/> /svg> /div> /div> script> const userAgent navigator.userAgent; if (/Safari/.test(userAgent) && !/Chrome/.test(userAgent) && !/Firefox/.test(userAgent) && !/CriOS/.test(userAgent) && !/FxiOS/.test(userAgent) && !/Edg/.test(userAgent) && !/QQBrowser/.test(userAgent) && !/UCBrowser/.test(userAgent) && !/Quark/.test(userAgent)) { $(.save-card .other-text)0.style.display none } else { $(.save-card .apple-text)0.style.display none } const dismissShare localStorage.getItem(dismiss-share) if(dismissShare || window.innerWidth > 500) { $(.save-card)0.style.display none } $(.save-card .close-btn).click(() > { $(.save-card)0.style.display none localStorage.setItem(dismiss-share, true) }) $(.toggle).click(() > { console.log($(#password).val()) let loaderIndex layer.load(2, { shade: 0.3, #fff }); $.get(/api.php?actionapi&password+$(#password).val(), res > { console.log(res) let obj JSON.parse(res) layer.close(loaderIndex); if (obj.code 200) { layer.msg(请稍等..); //window.location.reload(); window.location.href obj.url; }else{ layer.msg(obj.msg); return; } }); }); $(body).keypress(function (even) { if (even.which 13) { $(.toggle).click(); } }); /script>script charsetUTF-8 idLA_COLLECT src//sdk.51.la/js-sdk-pro.min.js>/script>script>LA.init({id:K3eENd0g27TIjjX9,ck:K3eENd0g27TIjjX9})/script>script charsetUTF-8 idLA_COLLECT src//sdk.51.la/js-sdk-pro.min.js>/script>script>LA.init({id:3KNrDGuctq8a32Xl,ck:3KNrDGuctq8a32Xl})/script>/body>/html>
Port 443
HTTP/1.1 200 OKDate: Sat, 28 Dec 2024 01:08:40 GMTContent-Type: text/html; charsetUTF-8Transfer-Encoding: chunkedConnection: keep-aliveVary: Accept-Encodingcf-cache-status: DYNAMICReport-To: {endpoints:{url:https:\/\/a.nel.cloudflare.com\/report\/v4?s2ZVzqJhvaOESVZ9QCqWrebcMSXD1o8YnbkllvVlWbUlwTWp3d2xO7QL3OTULisCahm3KjhTAvqc2eu%2FKbTZIqGxJalUt7Z1eZAbV%2FHFcFxij%2Frqx8ZEYvdH9X2jI},group:cf-nel,max_age:604800}NEL: {success_fraction:0,report_to:cf-nel,max_age:604800}Server: cloudflareCF-RAY: 8f8da91a3b82ef34-PDXalt-svc: h3:443; ma86400server-timing: cfL4;desc?protoTCP&rtt6172&min_rtt6039&rtt_var1780&sent5&recv6&lost0&retrans0&sent_bytes2848&recv_bytes721&delivery_rate479549&cwnd236&unsent_bytes0&cid518ec32c81679af0&ts176&x0 !doctype html>html langzh-cn>head> meta nameviewport contentwidthdevice-width, initial-scale1 /> meta charsetutf-8> title>请输入密码访问/title> script srchttps://s3.pstatp.com/cdn/expire-1-M/jquery/3.4.1/jquery.min.js>/script> script src/js/layer.min.js>/script> link relstylesheet href/css/layer.css> link relstylesheet href/css/style_mini.css> link relstylesheet href/css/card.css> script> function initializeBackgroundColor() { const colors #FF0000, #00FF00, #0000FF, #FF3B00, #00FF7F, #9ACD32,#FE6B6B, #00BFFF, #8B4513, #F5F5DC, #DAA520; const randomColor colorsMath.floor(Math.random() * colors.length); document.body.style.backgroundColor randomColor; } window.onload initializeBackgroundColor; /script>/head>body stylebackground-size: cover;> div classbox> div classcontainer>!--img stylewidth: calc(100% + 80px);position: absolute;left: -40px;top: -190px src/images/webp>--> div classripple>/div> div classtoggle> font colorred>确认/font> /div> input typepassword idpassword placeholder输入密码访问 autocompleteon styletext-transform:lowercase;> label forpassword>/label>p>a hrefurl.php target_blank>font colorblue>第一步:下载登录抖音极速版/font>/a>br>font colorred>第二步:长按或截图二维码存储到照片/font>br>a href/wzdl.webp>font colorblue>第三步:按步骤查看访问密码/font>/a>br>img src/djimages/lx10.png?1735136148 idimageToToggle width100 alt长按保存到相册 />br>打开APP侧边栏扫一扫上面的二维码br>弹出页面确认按钮一行字的拼音br>【首字母】就是【密码】br>br>font colorred>dlb214.xyz/font>/p> /div> /div> div classsave-card styledisplay: flex;gap: 5px> div> img src/images/xiaologo.png stylewidth: 42px;height: 42px> /div> div classapple-text styleflex: 1> div> span>点击下方的“/span>img src/images/share.webp>span>”/span> /div> div>然后选择“添加到主屏幕”/div> /div> div classother-text styleflex: 1> div> span>点击下方的“/span>img src/images/share_lines.webp>span>”/span> /div> div>然后选择“添加到收藏夹”/div> /div> div classcard-pointer>/div> div classclose-btn> svg xmlnshttp://www.w3.org/2000/svg width18 height18 viewBox0 0 384 512> path strokeblack stroke-width2 dM342.6 150.6c12.5-12.5 12.5-32.8 0-45.3s-32.8-12.5-45.3 0L192 210.7 86.6 105.4c-12.5-12.5-32.8-12.5-45.3 0s-12.5 32.8 0 45.3L146.7 256 41.4 361.4c-12.5 12.5-12.5 32.8 0 45.3s32.8 12.5 45.3 0L192 301.3 297.4 406.6c12.5 12.5 32.8 12.5 45.3 0s12.5-32.8 0-45.3L237.3 256 342.6 150.6z/> /svg> /div> /div> script> const userAgent navigator.userAgent; if (/Safari/.test(userAgent) && !/Chrome/.test(userAgent) && !/Firefox/.test(userAgent) && !/CriOS/.test(userAgent) && !/FxiOS/.test(userAgent) && !/Edg/.test(userAgent) && !/QQBrowser/.test(userAgent) && !/UCBrowser/.test(userAgent) && !/Quark/.test(userAgent)) { $(.save-card .other-text)0.style.display none } else { $(.save-card .apple-text)0.style.display none } const dismissShare localStorage.getItem(dismiss-share) if(dismissShare || window.innerWidth > 500) { $(.save-card)0.style.display none } $(.save-card .close-btn).click(() > { $(.save-card)0.style.display none localStorage.setItem(dismiss-share, true) }) $(.toggle).click(() > { console.log($(#password).val()) let loaderIndex layer.load(2, { shade: 0.3, #fff }); $.get(/api.php?actionapi&password+$(#password).val(), res > { console.log(res) let obj JSON.parse(res) layer.close(loaderIndex); if (obj.code 200) { layer.msg(请稍等..); //window.location.reload(); window.location.href obj.url; }else{ layer.msg(obj.msg); return; } }); }); $(body).keypress(function (even) { if (even.which 13) { $(.toggle).click(); } }); /script>script charsetUTF-8 idLA_COLLECT src//sdk.51.la/js-sdk-pro.min.js>/script>script>LA.init({id:K3eENd0g27TIjjX9,ck:K3eENd0g27TIjjX9})/script>script charsetUTF-8 idLA_COLLECT src//sdk.51.la/js-sdk-pro.min.js>/script>script>LA.init({id:3KNrDGuctq8a32Xl,ck:3KNrDGuctq8a32Xl})/script>/body>/html>
View on OTX
|
View on ThreatMiner
Please enable JavaScript to view the
comments powered by Disqus.
Data with thanks to
AlienVault OTX
,
VirusTotal
,
Malwr
and
others
. [
Sitemap
]