THUGS(red) DarkWeb/Monitor_

payload

Alive Ransomware Tor v3

capture taken 44m ago
Screenshot of payload
what the page says

Payload Rescue | Login

Source reported this address as offline or seized at import time.

Support in Tox: 116A337A063FBB66C4B7DFB4FC2271759A89B08757FD8376CE632CB0290BEB252F91B4B34C47 We are not affiliated with any RaaS. We are solely a financially motivated group. We do not carry out any political cyberattacks. Username Password LOGIN
reachability history
The 4 most recent checks.
When Status HTTP Response Bytes Via
44m ago Alive 200 469 ms 1,192 chrome-stealth
2h ago Alive 200 183 ms 1,192 chrome-stealth
3h ago Alive 200 432 ms 1,192 chrome-stealth
4h ago Alive 200 475 ms 1,192 chrome-stealth
security headers
Cross origin
Cookies
Count
0
Secure
0
Httponly
0
Samesite
0
Score
0
Missing
csphstsx_frame_optionsx_content_typereferrer_policypermissions_policycoopcoepcorp
technology detected
Server
Raw
nginx
Name
nginx
Family
nginx
Protocol
http/1.1
what blocks us
Detected
no
Confidence
0
Waited ms
0
Http code
200
Via
chrome-stealth
contacts published
  • Tox116A337A063FBB66C4B7DFB4FC2271759A89B08757FD8376CE632CB0290BEB252F91B4B34C47
  • Total1
crypto addresses
  • Total0
forms on the page
Count
1
Kinds
Login
1
Has login
yes
Has search
no
Has upload
no
Forms
  • Kind
    login
    Method
    post
    Action
    http://payloadynyvabjacbun4uwhmxc7yvdzorycslzmnleguxjn7glahsvqd.onion/login
    Inputs
    3
    Types
    textpasswordsubmit
    Password
    yes
    File
    no
outbound onion links
  • onion_unique not tracked onion_unique
  • onion_total not tracked onion_total
  • clearnet_unique not tracked clearnet_unique
  • internal not tracked internal
  • external not tracked external
  • total not tracked total
  • truncated not tracked truncated
response headers
HeaderValue
connection keep-alive
content-length 1192
content-type text/html; charset=utf-8
date Fri, 21 Aug 2026 10:43:30 GMT
server nginx