EN ES PT
Back to Stats

Visual Capture

Screenshot of xdzuot6a.ridistrict.comwww.xdzuot6a.ridistrict.com

Detection Info

https://xdzuot6a.ridistrict.comwww.xdzuot6a.ridistrict.com/
Detected Brand
TK Store
Country
International
Confidence
100%
HTTP Status
200
Report ID
4e1127c6-9e8…
Analyzed
2026-01-14 22:01

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T1CE526032A051B53740C383F2AB302BAABBE0C2A7D693464595F8C35C5BD1D52DD2F62B
CONTENT ssdeep
192:CSZeRQxgRj5sMiDM6Mc+TfyKTpfT4I40STp4MnloFnxpq/+1qp31qPaWI:CJREaP6McWa6trZyhnixpaUk0XI

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
ec6c9393db682465
VISUAL aHash
fff3c191f9ffe7cf
VISUAL dHash
5b262723330c861e
VISUAL wHash
fde38181f1ff0103
VISUAL colorHash
07400080000
VISUAL cropResistant
5b262723330c861e,0f363667cb4072fe,9848648434f28345

Code Analysis

Risk Score 85/100
Threat Level BAJO
🎣 Credential Harvester 🎣 OTP Stealer 🎣 Banking 🎣 Personal Info

🔬 Threat Analysis Report

• Threat: Suspicious domain with future creation date
• Target: Potentially targets TK Store users
• Method: Unclear, as the page doesn't present a clear phishing scheme but the domain is very suspect.
• Exfil: Unknown
• Indicators: Domain created in the future
• Risk: LOW - While the domain is invalid and suspicious, the screenshot only shows a legitimate-looking homepage.

🔒 Obfuscation Detected

  • atob
  • fromCharCode
  • unescape
  • unicode_escape
  • base64_strings

📡 API Calls Detected

  • GET

Similar Websites

Pages with identical visual appearance (based on perceptual hash)

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.