EN ES PT
Back to Stats

Visual Capture

Screenshot of mpeo3n2yeunwh.duckdns.org

Detection Info

http://mpeo3n2yeunwh.duckdns.org/de/
Detected Brand
Apple
Country
International
Confidence
100%
HTTP Status
200
Report ID
58a7c142-d5e…
Analyzed
2026-01-20 23:46
Final URL (after redirects)
http://mpeo3n2yeunwh.duckdns.org/de/main

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T19581ABB30701144D6F82F9C4A4227F19955BC22DE54FC86CF2EE597A67C4FB0C690AA5
CONTENT ssdeep
48:WhHceGT3ZAzrJUekd0dv/iK8NkAVn1aIi53LImr+pVUi8zf013xK0qF+t355oEYz:vEtHk2LGmrWui8mFk+tp5oh4Enzl

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
a6764c0d59193377
VISUAL aHash
00ffffffffff1fff
VISUAL dHash
80080c0c08ec7000
VISUAL wHash
00e7e7ffff0f0000
VISUAL colorHash
07202000080
VISUAL cropResistant
8c0c0c0c08783000,0000014141018000

Code Analysis

Risk Score 82/100
Threat Level ALTO
āš ļø Phishing Confirmed
šŸŽ£ Credential Harvester šŸŽ£ OTP Stealer šŸŽ£ Card Stealer šŸŽ£ Banking šŸŽ£ Personal Info

šŸ”¬ Threat Analysis Report

• Threat: Credential harvesting phishing kit
• Target: Apple users worldwide
• Method: Fake Apple ID login form stealing credentials
• Exfil: Data sent to unknown server via JavaScript
• Indicators: Free hosting, domain mismatch, obfuscated JavaScript
• Risk: HIGH - Immediate credential theft

šŸ”’ Obfuscation Detected

  • fromCharCode
  • unescape
  • hex_escape
  • unicode_escape

šŸŽÆ Kit Endpoints

  • https://iforgot.apple.com/password/verify/appleid
😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.