← All Tools

Phishing Investigation フィッシング調査

A vertical slice that chains four already-live tools around a shared case context. First bowl off the new workflow line — feedback welcome.

⚠ The case lives in memory only by default. Nothing is uploaded. Nothing is written to your browser storage unless you tick "Keep this case in my browser" in the sidebar. Closing this tab wipes the case.
1 Paste a suspect URL

Drop the URL or domain you got in the message. We extract it as a url and a domain artifact for the case. Need a deeper look? Open Phishing Checker →

Open standalone tool
2 Paste the raw email headers

We pull the originating IP, sender address, and SPF / DKIM / DMARC verdict into the case. For full analysis, open the Email Header Analyzer →

Open standalone tool
3 Defang collected indicators

Refanged values are normalised on add; here we show the safe-to-share form. For interactive defanging, open IOC Defanger →


                    
4 Pivot & export

Send the case to IOC Pivoting for graph-style pivots across IPs, domains and URLs (a sessionStorage handoff pre-fills the next tool), or export everything as CSV / STIX 2.1 right here.

Open IOC Pivoting