EN ES PT
Back to Stats

Visual Capture

Screenshot of ndax-login-access.typedream.app

Detection Info

https://ndax-login-access.typedream.app
Detected Brand
NDAX
Country
Canada
Confidence
100%
HTTP Status
200
Report ID
1c017d4f-e4d…
Analyzed
2026-01-02 05:42
Final URL (after redirects)
https://ndax-login-access.typedream.app/

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1E5430BEA2851B0164B7340D394BF2A8AB33D182FB91D4590A574CFE571B88B5702BF8F
CONTENT ssdeep
1536:SmZd7LOlT2DbM4ouGjH6CpXyOloQzZs8oWQbp:C2iT9ds8oWA

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
a97c96697196649c
VISUAL aHash
c3c3c3c3c3c3ffff
VISUAL dHash
1f2b070f1b07dbda
VISUAL wHash
8381838381c3dfff
VISUAL colorHash
16000200038
VISUAL cropResistant
1f2b070f1b07dbda,32e594cb89a90892

Code Analysis

Risk Score 94/100
Threat Level ALTO
āš ļø Phishing Confirmed
šŸŽ£ Credential Harvester šŸŽ£ OTP Stealer šŸŽ£ Card Stealer šŸŽ£ Banking šŸŽ£ Personal Info

šŸ”¬ Threat Analysis Report

• Threat: Phishing attack targeting NDAX users.
• Target: NDAX (National Digital Asset Exchange) users in Canada.
• Method: Impersonating the NDAX website with a fake login page hosted on a free hosting platform to steal credentials.
• Exfil: Data exfiltration target unknown but assumed to be a attacker-controlled server or service.
• Indicators: Domain mismatch (ndax-login-access.typedream.app vs ndax.io), use of a free hosting service (typedream.app), NDAX brand impersonation.
• Risk: HIGH - Potential for credential theft and account compromise.

šŸ”’ Obfuscation Detected

  • fromCharCode
  • unescape
  • unicode_escape

šŸ“” API Calls Detected

  • GET
  • https://typedream.com/forms?utm_source=form-thank-you-page:
  • POST
😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.