https://urldefense.com/v3/__http:/tracking.enterprisedeliveries.com/id_h4t50hc8gz/6415bd/f29c0c22-4686-4be2-b8b9-c5390b4c1d28/?__;!kI-RaYHuUlXHMWI!xFgOT9fgfLnM04ZV9l5AaH_k7JW6uyGu_0Jg-GgFiG8WP5awWPzzhCCkVV-UFA$
Last Checked: Dec 02, 2019, 18:37 EST
IP Address: | 52.6.56.188 |
ASN #: | AS14618 AMAZON-AES - Amazon.com, Inc., US |
Location: | Data unavailable. |
URL Reputation: |
|
Other submissions on 52.6.56.188:
-
https://urldefense.com/v3/__http://sp.brd.to/f/a/WJTwr_crsvdCp98Pw8d_UQ**A/AAAZ0QA*/RgRlFTbCP0Q0aHR0cHM6Ly93d3cuYXJhbWV4LmNvbS5hdS90b29scy90cmFjaz9sPU1QMDAxNTM5MjAyOFcFc3BjZXVCCmMjwrEyY1JeS5NSGnAwM19wdXJjaGFzaW5nQGZtZ2wuY29tLmF1WAQAADSa__;fn5-!!OVe7agNpIlw!JvB_2O--Ws-ybw4RY9WnKahe6O45_YQQzgdb91Hb7rvGpgBOwkp4cQQzCNkv-XuEBnyoqmBpyDv29QZ2_xkLuq5atg$
-
https://urldefense.com/v3/__https:/messaging-security.comano.us/XYUdsTVdEVXlWMWxRUjFFMlV6aHFibEZ0Y0UxMmIyeDBOVmw1VGtsQ01HdHBUbGswTTFGMEsyRXZUMHcwUldObE4wRlROVVUzYjIxWWNISmlWSFpYTWpKbFlreFBVazVPZUV0VmJIcG5VMk5vVXpob1JETTBkbVJJVnpob04ySkZNMGRxYlRCUGVFczRhbTB6ZEhJNVNWZ3pRVTFhV1Uwd00wRkdjSEJSYlhOYUx6WnVMMkV4VlhWaGNWTjBUMUJuT0hGS2VHSnFSU3RMTlU4d2QwcDJVWFJRWkhCTldteFZaVWROUFMwdFUwSk9lV2RMTTFKeWNpdHJNRkZrTkV0SWJqaFlkejA5LS01YTVmMzMwMzY2MjZkZGRlYzg1NzgzOGI1NWRjNzJlMGJhMTBmMGU2?cid=1377517442__;!!GryZGb6B1VCs0SfC!ROK9lqxY9o-BVaZqn1hmUwudpeerr39JZhUGkdIEeHBKQZMe7h4uSkB7OsMWLWssWQ$
-
https://urldefense.com/v3/__https://partners.sentinelone.com/__;!!AaIhyw!tkZfW2BCgooebvPeeMo-DPgBk1vqSnha6k86KnJi6XNyF_bbwXTM0FzwRqpxiL4_gvQwWAzdNQfNtIjaNHM$
-
https://urldefense.com/
-
https://urldefense.com/v3/__https://www.canpar.com/en/tracking/track.htm?barcode=D423132140000097885001__;!!OOnBcYQ!MzuMIomD0Lxd3eDj1nNJJ9rNLlcMdjV8qIiCEZWqeIj4MTgu4XQyuGBz5Cf3J2dcnq_swjW87_5TIW8oR1m3KIAPOLs$
-
https://urldefense.com/v3/__https://drive.google.com/file/d/1YtGdRVoeVy_jUJSoj016hhZybGxNjXWk__;!!OOnBcYQ!INnb-mF-Q7lSysxeo9OLyve7g-YlMdD0E6P2eQ2yrJG2MLl-CYztCQ30cYG3hSbsbgCAv0wOJYQxbeIhoRzmJpGMl9zI$
-
https://urldefense.com/v3/__http://8pretgdl.r.us-east-1.awstrack.me/L0/http:*2F*2Fwww.excelgoodies.com*2Fpowerbi-training-newyork/1/01000184c3aa848a-9c39b1b6-643c-4a1c-a9bd-02ee86f8c46b-000000/aXqSFEzseg5wkLuQ1R8WKMhfxRk=298__;JSUl!!OOnBcYQ!PBQzRsg2vUbl-UBAqhLLBc30v1ndmmd0ZBRZZf_6oyg8o8BGcl8iPbHvafJwqJS2tfGFi7G2V_NMNvHMcszi5djH$
-
https://urldefense.com/v3/__https:/postoffice.adobe.com/po-server/link/redirect?target=eyJhbGciOiJIUzUxMiJ9.eyJ0ZW1wbGF0ZSI6ImJsZXRoZXJfdGVhbV9hZG1pbl9pbnZvaWNlIiwiZW1haWxBZGRyZXNzIjoic2VydmljZWRlc2tAYW5sLmNvbS5hdSIsInJlcXVlc3RJZCI6ImY4ZDZhNjhmLTA2NTctNDAxMS05MjFlLTY2Mjk5YzllNzQxZCIsImxpbmsiOiJodHRwczovL2FkbWluY29uc29sZS5hZG9iZS5jb20vMkREMTM1MUU1QjkyMUNDNzBBNDk1Q0RDQEFkb2JlT3JnL2FjY291bnQ_bG9jYWxlPWVuX1VTIiwibGFiZWwiOiIxMCIsImxvY2FsZSI6ImVuX1VTIn0.ysD7co6UhEBnmjANazxYkqXgb3-0Y_WJfML4om4f6nlHhnRxF1sOB1kvdYeqUiy3Nl6tD2mxRgkYSuR6HshGaA__;!!CHTgRmCF!A0lLVgAiS9Wnr7brnkZBIMVIgj-eJEVdZbPysDcQdyY6lcfbnB_YVtGEXl6rJ1NCvehwHbCyZF3EN6Q1ag$
-
https://urldefense.com/v3/__https://t.sidekickopen86.com/Ctc/5C*23284/cDbXb04/JlF2-6q7W8wLKSR6lZ3mlW64SgG17wDlRVW197_b92DFyQ-W5RcJjl19j1wdW64_ZFL2tgzmqW7VqGFv5yhSkDW8fxxMF6trbz0W2Fzwg95xnkcSN17CvjytYtJzW17Ttl-4jwQnpW24V9FT7TcHXcW1C39K96DRsw6W2cC6mq8121V3W67M01q4N67YkW1PDh592BzrNqW484yck7RY6d8N442DJgZrn-dV7SH625tDsN8W2tc2vT5G8YCqW2VmgB13ZzZ5cW4bBMbN8j1HDFW2dhMwZ7zmYHYW69l0Mf6yZQvHW7FSssv7R9cbkW6DfPtN1Gt7WRN5P0jSPPyhvKW4DhFYk70CjspW6ZFHZ48jnhlGW8hvlW05B0wFmf3b3hVY04__;Kw!!LouN9OorEw!SnXrRIBU4sOcpvBfT_sUPlnL1JlM-4GINHiTRwzzK21WxAGJ6SkdLCNkfqJDZz_Vjw90E5RbllslCFqQ4wWUrgZoxXaH2A$
-
https://urldefense.com/v3/__https:/compensationsoftware.ehr.com/Home/Authentication__;!!En7CP0OkmQ!jBx9Ss83ZrNWbD42Q4Fhnt2Bz3R4VOL0jfyIHiQCEKalj19mVHFZfZwaMnNgMw$
Other submissions on urldefense.com:
-
https://urldefense.com/v3/__https://account.live.com__;!!M-nmYVHPHQ!dFskecohFlu7pdW-eD-tOEvQhObTzDAGz3A3efvZJL_h5zuEDlRRCa2UPgJE_gzs4h5_rA$
-
https://urldefense.com/v3/__https://sailthru.perkspot.com/click/22476723.323088/aHR0cHM6Ly9lbWFpbC5wZXJrc3BvdC5jb20vZS92My9jbGljay9vZmZlci8xNDE3NDEzL251dHJpc3lzdGVtP2VtYWlsPW1ibGFuayU0MGNodWJiLmNvbSZlbWFpbEJsYXN0SWQ9MjI0NzY3MjMmZW50aXR5RW1haWxUeXBlQ29kZT1kZWRpY2F0ZWQmdXNlcklkPTExNTc3OTkxJmNvbW11bml0eWlkPTgwOCZhdXRoPWJiZmI0OWQ0ZTM4ZWRkMWU3NWQ0NWI4MjM1YmNjOTc5/5b68a4ff9c625f7a75499506B667af133__;!!Mb3P9oM!QyOy3KdwT0EiZphfv-8RNxUBQU2mQHKDiNii1bWo4lgquw1fQcAxwxyUeKMvog$
-
https://urldefense.com/v3/__https://7335fidelitymortgage.com/__;!!M-nmYVHPHQ!f7jlO0PLr7_ibFgrSboAVVNbAGjTv-BaywYTF3IOgECGTxiYVn4Jl3EesBc3J3r0wcNZ7w$
-
https://urldefense.com/v3/__http:/lnk.businesscasewritingmails.com/ltrack?g=0&id=cB9SBFVUAlUAVERSUghRXFINABg=BQYND1ZWXVUeAkUEFE8KBF1fSiIAWlFMRFoDV01UCQg=&client=86453&c=0000__;!!BN3BN5aqUA!o2ewG01Z_wCf4kEXFgyR1r7YlobeJn7qOPS3d0vO26vnD6u-8Z0STj-p6vxzY4RUHWw$
-
https://urldefense.com/v3/__http://www.garda.com/cashservices__;!!NFncetSHwddAPQ!p9nkf4iw4RGucMWZxI3VYkl18QlhFr0TPOrF4qDsiV7-JbBZvgj3xNHZqRTSwmSv4Oo$
-
https://urldefense.com/v3/__https://www.google.com/__;!!La4veWw!k2VMerrfAPc4JYjFBiLo4M9bZSDM_pyCrkMHAZLlZTMs5-Bpyj0ErWzcSfvhIrpUi9uJ$
-
https://urldefense.com/v3/__https://clicks.eventbrite.com/f/a/ws9sqxFM62DA_Gm4Tl6UjQ**A/AAQxAQA*/RgRh4vvIP0Q6aHR0cHM6Ly93d3cuc2VjcmV0c2VydmljZS5nb3YvcHJvdGVjdGlvbi9udGFjL3JlZ2lzdHJhdGlvblcDc3BjQgpf_EjIAWCqXz9tUhRHYXJ5Lk1jQWx1bUB1c2FhLmNvbVgEAAAAAA**A__;fn5-fn4!!GryZGb6B1VCs0SfC!QwF0oeBQ_JAcEvKeuMzJBWxxKZgt8wbf7cgy7usTPBE27VOHcZChlyDYFcpIiJJ9$
-
https://urldefense.com/v3/__https:/www.yammer.com/uk.tesco.com/groups/52041621504?trk_event=gmap_group_member_addition_clicked&trk_group_id=52041621504__;!!JUyETn1neQ!qED2S9xBQGvCCZwpMRLeRkDc2OhoN9nDvsnjj2-HCH1EF3k16V2JYGbUTxaaPCPfSZBh$
-
https://urldefense.com/v3/__https:/www.giftcards.tescoforbusiness.com/gift-card/view/OF2GCiRBUYjoQWcMPh2iDvDxf/__;!!JUyETn1neQ!pYqd9CZ23KrdNOUn0-vegxVJMs8BRjflbtRY4ApgehbODDs-DqFWv64QuptBIx9KzPmq$
-
https://urldefense.com/v3/__http:/s.lucrativehiring.com/d/262436m5/dl=0/8a08c9/1c46448e-73c9-4565-9567-c09259acd571/?__;!!GryZGb6B1VCs0SfC!XexFFzcjUU49D08bTD6WofJLS7dMW5hdbOXybxubAt5Ft5E44Lp3xJ7LpbXjwe966A$
Previous checks:
fgets: Connection reset by peer
-
GET302 Found
https://urldefense.com/v3/__http:/tracking.enterprisedeliveries.com/id_h4t50hc8gz/6415bd/f29c0c22-4686-4be2-b8b9-c5390b4c1d28/?__;!kI-RaYHuUlXHMWI!xFgOT9fgfLnM04ZV9l5AaH_k7JW6uyGu_0Jg-GgFiG8WP5awWPzzhCCkVV-UFA$
-
GET200 OK
http://tracking.enterprisedeliveries.com/id_h4t50hc8gz/6415bd/f29c0c22-4686-4be2-b8b9-c5390b4c1d28/
-
GET200 OK
http://tracking.enterprisedeliveries.com/javascripts/jquery-latest.min.js
-
GET200 OK
http://tracking.enterprisedeliveries.com/system/content_files/uploads/779/7b7/17-/original/industry-specific-css.css
-
GET200
https://www.googletagmanager.com/gtag/js?id=UA-126808791-4
-
GET200 OK
http://tracking.enterprisedeliveries.com/javascripts/jquery.periodicalupdater.js
-
GET200 OK
http://tracking.enterprisedeliveries.com/system/content_files/uploads/347/34b/70-/original/bootstrap3.min.js
-
GET200 OK
http://tracking.enterprisedeliveries.com/system/content_files/uploads/3d3/c7f/05-/original/bootstrap3.min.css
-
GET200 OK
http://tracking.enterprisedeliveries.com/system/content_files/uploads/a22/726/ae-/original/jquery.min.js
-
GET200 OK
http://tracking.enterprisedeliveries.com/system/content_images/uploads/0b2/ad2/90-/original/logo-5.png
-
GET200
https://fonts.googleapis.com/css?family=Roboto:100,300,400,700
-
GET200
https://www.google-analytics.com/analytics.js
-
GET200 OK
http://tracking.enterprisedeliveries.com/javascripts/jquery.periodicalupdater.js
-
GET200
https://www.google-analytics.com/r/collect?v=1&_v=j79&aip=1&a=1507947183&t=pageview&_s=1&dl=http%3A%2F%2Ftracking.enterprisedeliveries.com%2Fid_h4t50hc8gz%2F6415bd%2Ff29c0c22-4686-4be2-b8b9-c5390b4c1d28%2F%3F&ul=en-us&de=UTF-8&dt=PhishMe&sd=24-bit&sr=1366x768&vp=1920x1006&je=0&_u=IEBAAUAB~&jid=975116235&gjid=2041964561&cid=196422463.1575329802&tid=UA-126808791-4&_gid=1077804467.1575329802&_r=1>m=2ouav9&z=1913826021
-
GET404 Not Found
http://tracking.enterprisedeliveries.com/favicon.ico
-
GET200
https://fonts.gstatic.com/s/roboto/v20/KFOkCnqEu92Fr1MmgVxIIzI.woff2
-
GET200
https://fonts.gstatic.com/s/roboto/v20/KFOlCnqEu92Fr1MmWUlfBBc4.woff2
-
GET200
https://fonts.gstatic.com/s/roboto/v20/KFOmCnqEu92Fr1Mu4mxK.woff2
-
GET200
https://fonts.gstatic.com/s/roboto/v20/KFOlCnqEu92Fr1MmSU5fBBc4.woff2
-
GET200 OK
http://tracking.enterprisedeliveries.com/log_info?tid=f29c0c22-4686-4be2-b8b9-c5390b4c1d28&_=1575329794943
-
GET200 OK
http://tracking.enterprisedeliveries.com/log_info?tid=f29c0c22-4686-4be2-b8b9-c5390b4c1d28&_=1575329794944
- https://urldefense.com/v3/__http:/tracking.enterprisedeliveries.com/id_h4t50hc8gz/6415bd/f29c0c22-4686-4be2-b8b9-c5390b4c1d28/?__;!kI-RaYHuUlXHMWI!xFgOT9fgfLnM04ZV9l5AaH_k7JW6uyGu_0Jg-GgFiG8WP5awWPzzhCCkVV-UFA$ http://tracking.enterprisedeliveries.com/id_h4t50hc8gz/6415bd/f29c0c22-4686-4be2-b8b9-c5390b4c1d28/?
<html lang="es-419"><head> <script type="text/javascript" async="" src="https://www.google-analytics.com/analytics.js"></script><script async="" src="https://www.googletagmanager.com/gtag/js?id=UA-126808791-4"></script> <script> window.dataLayer = window.dataLayer || []; function gtag(){dataLayer.push(arguments);} gtag('js', new Date()); gtag('config', "UA-126808791-4", { 'anonymize_ip': true, 'page_title': 'PhishMe', 'page_location': document.location.href.replace(document.location.search, '') }); </script> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8"> <meta charset="utf-8"> <meta http-equiv="X-UA-Compatible" content="IE=edge"> <meta name="viewport" content="width=device-width, initial-scale=1"> <title>Estafas de phishing de DHL</title> <script src="/javascripts/jquery-latest.min.js"></script><!--[if lte IE 8]><script src="/javascripts/jquery-1.12.4.min.js"></script><![endif]--> <!-- Bootstrap Framework --> <link rel="stylesheet" href="/system/content_files/uploads/3d3/c7f/05-/original/bootstrap3.min.css"> <!-- Education CSS --> <link href="/system/content_files/uploads/779/7b7/17-/original/industry-specific-css.css" rel="stylesheet"> <!-- Custom CSS Styles --> <style> /* Global */ body { background: #FFFFFF; /* Main background colour */ color: #333333; /* Colour of the main text */ } /* Typography */ h1 { color: #2C3E4F; } h2 { color: #2C3E4F; } p { color: #333333; } /* Interactive Email */ .topBar { background: #2C3E4F; } .highlight { border-bottom: 3px solid #8C0303; } /* Footer */ .icon::before { background: #2C3E4F; } /* Blue circle with number */ /* Misc styles - do not delete */ .emailLogo { margin-left: auto; margin-right: 0; display: block; max-width: 150px; height: auto; } .emailContainer { margin: 20px 20px 0px 0; } .emailContents p { text-align: left; font-size: 1em; } section { margin: 20px 0 !important; } .small, small { font-size: 80%; } </style> <!-- HTML5 shim and Respond.js for IE8 support of HTML5 elements and media queries --> <!-- WARNING: Respond.js doesn't work if you view the page via file:// --> <!--[if lt IE 9]> <script src="https://oss.maxcdn.com/html5shiv/3.7.3/html5shiv.min.js"></script> <script src="https://oss.maxcdn.com/respond/1.4.2/respond.min.js"></script> <![endif]--> <script src="/javascripts/jquery.periodicalupdater.js" type="text/javascript"></script> <script type="text/javascript"> var pollingIntervalInMilliseconds = 10000; $.PeriodicalUpdater('/log_info', { method: 'get', data: {tid:'f29c0c22-4686-4be2-b8b9-c5390b4c1d28'}, minTimeout: pollingIntervalInMilliseconds, type: 'text', maxCalls: 30, autoStop: 0}); </script> <script src="/javascripts/jquery.periodicalupdater.js" type="text/javascript"></script> <script type="text/javascript"> var pollingIntervalInMilliseconds = 10000; $.PeriodicalUpdater('/log_info', { method: 'get', data: {tid:'f29c0c22-4686-4be2-b8b9-c5390b4c1d28'}, minTimeout: pollingIntervalInMilliseconds, type: 'text', maxCalls: 30, autoStop: 0}); </script> </head> <body> <div class="container"> <!-- Header Section --><section class="header"><!-- Main Heading --><h1>Correos electrónicos de phishing donde se suplanta a <span class="boldHeader">DHL</span> </h1> <!-- Subheading --><p class="subheading">El phishing es una de las principales causas de violaciones de datos:<br> un único clic basta para poner en riesgo nuestra red.</p> </section><!-- End Header Section --> <!-- Main Content/email Section --><section class="main"> <div class="row"> <!-- Interactive Email --><div class="col-md-6"> <!-- Mobile only instructions --><p class="mobileOnly text-center">Haga clic en los elementos destacados a continuación</p> <div class="emailContainer"> <!-- Top bar for email UI --><div class="topBar"> </div> <!-- Email Header --><div class="emailHeader"> <p><span class="emailLabel">De:</span> shipping@dhlexpress.com</p> <p><span class="emailLabel">Asunto:</span> AVISO DE LLEGADA</p> </div> <!-- Email Contents --><div class="emailContents"> <p><a href="#" class="highlight" data-toggle="tooltip" title="" role="tooltip" data-original-title="Pista 1: Se utiliza un saludo genérico">Estimado cliente</a>:</p> <br><p><strong><a href="#" class="highlight" data-toggle="tooltip" title="" role="tooltip" data-original-title="Pista 2: ¿Estaba esperando una entrega?">Su envío</a> ha llegado.</strong></p> <br><p>Información sobre la entrega</p> <p>Su paquete <a href="#" class="highlight" data-toggle="tooltip" title="" role="tooltip" data-original-title="Pista 3: Verifique si existen errores ortográficos y gramaticales">ha llegao</a> a su oficina local de DHL y está listo para recoger.</p> <p>--------------------------</p> <p><strong>AVISO DE LLEGADA</strong></p> <p>--------------------------</p> <br><p>FECHA Y HORA: 2018-09-07-18 a las 8:40</p> <p>ESTADO: Envío entregado</p> <p>CLASE: Servicios de paquetería</p> <p>**********************</p> <p>Imprima el recibo <a href="#" class="highlight" data-toggle="tooltip" title="" role="tooltip" data-original-title="Pista 4: Jamás descargue adjuntos que no espera recibir">adjunto a este correo</a> y diríjase a la oficina de DHL indicada en el mismo.</p> <p><strong>Envíos internacionales de DHL</strong></p> <img src="/system/content_images/uploads/0b2/ad2/90-/original/logo-5.png" alt="DHL" class="emailLogo"> </div> </div> </div> <!-- End Interactive Email --> <!-- Main Content ---><div class="col-md-6"> <br><p>Los ciberdelincuentes envían correos electrónicos de phishing donde le solicitan sus credenciales de inicio de sesión y otra información confidencial para obtener acceso a nuestra red. Los correos de phishing lo tientan para que haga clic en vínculos o abra archivos adjuntos que infectan su computadora con malware.</p> <p>Los proveedores de servicio internacionales, como DHL en el sector de la logística, observan frecuentemente como se abusa de su marca y sus logotipos porque resulta fácil acceder a ellos, son muy conocidos y aseguran una alta tasa de éxito. Cualquier persona es o podría ser cliente de DHL y, por tanto, podría ser víctima de un ataque de phishing donde se suplanta a DHL.</p> <p>Incluso si un correo electrónico parece legítimo, siempre hay que actuar con cautela. Los ciberdelincuentes usan logotipos, firmas, direcciones de correo electrónico y los colores corporativos de DHL. Nunca haga clic en un vínculo si no está absolutamente seguro de que es legítimo.</p> <p>Algunos de los engaños populares de los correos electrónicos de phishing donde se suplanta a DHL son:</p> <ul> <li>Confirmación de los detalles de la entrega o la dirección del envío</li> <li>Hacer clic para comprobar el estado de una entrega</li> <li>Entrega no realizada</li> <li>Documentos o recibos del envío adjuntos</li> <li>Hacer clic para averiguar por qué un paquete se ha identificado como fraudulento</li> </ul> </div> <!-- End Main Content --> </div> </section><!-- End Main Content Section --> <!-- Remember Section --><section class="remember"> <div class="row"> <div class="col-md-12"> <!-- Remember Heading --><h2>Recuerde:</h2> </div> </div> <div class="row"> <!-- Icon One --><div class="col-md-3"> <p class="icon one">Cree contraseñas y PIN únicos para las cuentas conque realice envíos</p> </div> <!-- Icon Two --><div class="col-md-3"> <p class="icon two">Si está disponible, utilice la autenticación multifactor (MFA)</p> </div> <!-- Icon Three --><div class="col-md-3"> <p class="icon three">Utilice contraseñas largas y complejas</p> </div> <!-- Icon Four --><div class="col-md-3"> <p class="icon four">Contacte con el servicio al cliente de DHL para verificar los correos electrónicos</p> </div> </div> </section><!-- Disclaimer --><section> <div class="row"> <div class="col-md-12"> <p><small>El logotipo y el nombre de DHL son marcas registradas y propiedad intelectual de DHL. Uso de las marcas registradas de DHL conforme a un acuerdo de licencia.</small></p> </div> </div> </section> </div> <!-- jQuery --><script src="/system/content_files/uploads/a22/726/ae-/original/jquery.min.js"></script><!-- Compiled plugins --><script src="/system/content_files/uploads/347/34b/70-/original/bootstrap3.min.js"></script><!-- Tooltip toggle function --><script> $(function() { $('[data-toggle="tooltip"]').tooltip() }) </script> </body></html>