EN ES PT
Back to Stats

Visual Capture

Screenshot of dpln-guides.com

Detection Info

https://dpln-guides.com/
Detected Brand
Unknown
Country
International
Confidence
95%
HTTP Status
200
Report ID
264e18d3-475…
Analyzed
2026-03-16 19:44

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1AE537472E1C7A47B4627C1CDEAA2EF6771E1C18CC6530A4163F8865D1ADECE0F513A98
CONTENT ssdeep
1536:S2m+n8sjDqzR5CtcTnRID0xlKe6hWqmsMd:S2m+n8sjA8ynY0xehGsMd

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
cd4db232cd49b31c
VISUAL aHash
00000018000000ff
VISUAL dHash
004cf070300c1000
VISUAL wHash
00007e7e1810ffff
VISUAL colorHash
010000001c0
VISUAL cropResistant
0180804141414141,d6b3a91669696179,4125a28c33b2b2b2,0000000000000000,000470f070320800

Code Analysis

Risk Score 30/100
Threat Level ALTO
⚠️ Phishing Confirmed

🔬 Threat Analysis Report

• Threat: Phishing
• Target: Unknown
• Method: Deceptive website with a call to action
• Exfil: https://www.Quete anomalie des Khrandorvideo.com/recherche.php
• Indicators: Unrelated domain, suspicious phrasing, form action to a different domain.
• Risk: High

🔐 Credential Harvesting Forms

🎯 Kit Endpoints

  • https://www.Quete anomalie des Khrandorvideo.com/login?url=https%3A%2F%2Fwww.Quete anomalie des Khrandorvideo.com%2FQuete anomalie des Khrandor%2FQuete anomalie des Khrandor dofus%2F00013232-dofus.htm&hash=6fcc0a9a9fce841d2e65551e5a375b83

📤 Form Action Targets

  • https://www.Quete anomalie des Khrandorvideo.com/recherche.php

📊 Risk Score Breakdown

Total Risk Score
90/100

Contributing Factors

Suspicious Domain and Content
The domain is unrelated to the presented content, suggesting a phishing attempt.
Form Action to a suspicious Domain
Form action is directed to a domain which is unrelated to the main content which is a strong phishing indicator.
Vague and Suspicious content
The page uses vague french phrasing. This adds another indicator.

🔬 Comprehensive Threat Analysis

Threat Type
Unknown Threat
Target
General public
Attack Method
credential harvesting forms
Exfiltration Channel
HTTP POST to backend
Risk Assessment
LOW - Automated credential harvesting with HTTP POST to backend

🏢 Brand Impersonation Analysis

Impersonated Brand
Unknown

⚔️ Attack Methodology

Primary Method: Phishing

A phishing website attempts to steal user credentials or sensitive information. The attacker uses a deceptive website that mimics a legitimate one. The goal is to trick the user into entering their login credentials or other sensitive information.

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
dpln-guides.com
Registered
None
Registrar
None
Status
None

🤖 AI-Extracted Threat Intelligence

Scan History for dpln-guides.com

Found 1 other scan for this domain

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.