EN ES PT
Back to Stats

Visual Capture

Screenshot of 365756hd.com

Detection Info

https://365756hd.com/
Detected Brand
bet365
Country
International
Confidence
95%
HTTP Status
200
Report ID
73c7ff67-0e1…
Analyzed
2026-02-27 15:35

Content Hashes (HTML Similarity)

Used to detect similar phishing pages based on HTML content

Algorithm Hash Value
CONTENT TLSH
T14441F0F2C289A63762528AC6FF70B739F5D3018EF9411652C6F112FD03C9EB9D442A5A
CONTENT ssdeep
48:CpWxqnmsQ2HwvlFx6zk07m7roj7ao77ro6:9sAvlj6o7cnd/c6

Visual Hashes (Screenshot Similarity)

Used to detect visually similar phishing pages based on screenshots

Algorithm Hash Value
VISUAL pHash
cfb333c73031c698
VISUAL aHash
ef3c3c003c7c3000
VISUAL dHash
4969792af165600a
VISUAL wHash
ff3c3c307c7c3c00
VISUAL colorHash
00000000e00
VISUAL cropResistant
3232b232b6323232,9c7c424c7e480c1e,4969792af165600a

Code Analysis

Risk Score 50/100
Threat Level ALTO
⚠️ Phishing Confirmed
🎣 Credential Harvester

🔬 Threat Analysis Report

• Threat: Impersonation
• Target: Bet365 users
• Method: Redirecting to a potentially malicious domain.
• Exfil: Unknown
• Indicators: Domain mismatch, urgency tactic, warning about expired domain
• Risk: High

📊 Risk Score Breakdown

Total Risk Score
90/100

Contributing Factors

Impersonation
The site closely mimics the branding of Bet365.
Suspicious Content
The site provides alternative domain to be used.
Domain Mismatch
The URL (365756hd.com) does not match the brand and is not well known.

🔬 Comprehensive Threat Analysis

Threat Type
Credential Harvesting Kit
Target
bet365 users (International)
Attack Method
Brand impersonation
Exfiltration Channel
Form submission (backend endpoint not detected - likely JavaScript-based)
Risk Assessment
MEDIUM - Automated credential harvesting with Form submission (backend endpoint not detected - likely JavaScript-based)

⚠️ Indicators of Compromise

  • Kit types: Credential Harvester

🏢 Brand Impersonation Analysis

Impersonated Brand
bet365
Fake Service
Betting/Gambling

Fraudulent Claims

⚔️ Attack Methodology

Primary Method: Brand Impersonation

The attacker creates a look-alike website using the Bet365 logo and layout. The main purpose is to steal user credentials or redirect to a malicious site.

Secondary Method: Domain Spoofing

The attacker uses a similar domain name to trick the user into thinking this is legitimate.

🌐 Infrastructure Indicators of Compromise

Domain Information

Domain
365756hd.com
Registered
2024-08-20
Registrar
Namecheap
Status
ACTIVE

🤖 AI-Extracted Threat Intelligence

Scan History for 365756hd.com

Found 1 other scan for this domain

😰
"I Never Thought It Would Happen to Me"
That's what 2.3 million victims say every year. Don't wait to become a statistic.