THUGS(red) DarkWeb/Monitor_

ms13-089

Alive Ransomware Tor v3

capture taken 48m ago
Screenshot of ms13-089
what the page says

CHAT MS13-089

Login Email or username * Password *  Login
reachability history
The 4 most recent checks.
When Status HTTP Response Bytes Via
48m ago Alive 200 554 ms 220,312 chrome-stealth
2h ago Alive 200 241 ms 220,312 chrome-stealth
3h ago Alive 200 251 ms 220,312 chrome-stealth
5h ago Alive 200 617 ms 220,312 chrome-stealth
security headers
X frame options
sameorigin
X content type options
nosniff
Cross origin
X xss protection
1
Cookies
Count
0
Secure
0
Httponly
0
Samesite
0
Score
25
Missing
csphstsreferrer_policypermissions_policycoopcoepcorp
technology detected
Server
Family
unknown
Powered by
Express
Languages
  • Name
    Node.js / Express
Js
  • Name
    jQuery
    Version
    3.6.0
Analytics
  • Name
    Matomo
Protocol
http/1.1
what blocks us
Detected
no
Confidence
0
Waited ms
0
Http code
200
Via
chrome-stealth
contacts published
  • Total0
crypto addresses
  • Total0
forms on the page
Count
1
Kinds
Login
1
Has login
yes
Has search
no
Has upload
no
Forms
  • Kind
    login
    Method
    get
    Action
    http://chatmsuppxeoma533636ga3g5k56wlyl3zvycya35nhgoktrtg7wgzyd.onion/
    Inputs
    3
    Types
    textpasswordsubmit
    Password
    yes
    File
    no
outbound onion links
  • onion_unique not tracked onion_unique
  • onion_total not tracked onion_total
  • clearnet_unique not tracked clearnet_unique 1
  • internal not tracked internal
  • external not tracked external 1
  • total not tracked total 1
  • truncated not tracked truncated
response headers
HeaderValue
access-control-allow-origin *
connection keep-alive
content-encoding gzip
content-type text/html; charset=utf-8
date Fri, 21 Aug 2026 17:15:17 GMT
keep-alive timeout=5
transfer-encoding chunked
vary Accept-Encoding
x-content-type-options nosniff
x-frame-options sameorigin
x-instance-id 0829661d-207e-4b6c-ac7c-9c1f8a6d5a9c
x-powered-by Express
x-xss-protection 1